1 results (0.005 seconds)

CVSS: 7.8EPSS: 66%CPEs: 17EXPL: 2

30 Dec 2011 — Apache Geronimo 2.2.1 and earlier computes hash values for form parameters without restricting the ability to trigger hash collisions predictably, which allows remote attackers to cause a denial of service (CPU consumption) by sending many crafted parameters. NOTE: this might overlap CVE-2011-4461. Apache Geronimo v2.2.1 y anteriores calcula los valores hash de los parĂ¡metros de forma, sin restringir la capacidad de desencadenar colisiones hash predecible, lo que permite a atacantes remotos provocar una den... • https://packetstorm.news/files/id/180523 • CWE-20: Improper Input Validation •