๐Ÿ” CVE Alert

CVE-2024-46292

HIGH 7.5
CVSS Score
7.5
EPSS Score
0.0%
EPSS Percentile
0th

A buffer overflow in modsecurity v3.0.12 allows attackers to cause a Denial of Service (DoS) via a crafted input inserted into the name parameter. NOTE: this is disputed by the Supplier because it cannot be reproduced. Also, the product's documentation indicates that it is not guaranteed to be usable with very large values of SecRequestBodyNoFilesLimit (which are required by the claimed issue).

Vendor n/a
Product n/a
Published Oct 9, 2024
Last Updated Oct 20, 2024
Stay Ahead of the Next One

Get instant alerts for n/a n/a

Be the first to know when new high vulnerabilities affecting n/a n/a are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

n/a / n/a
n/a

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
github.com: https://github.com/owasp-modsecurity/ModSecurity/blob/v3/master/README.md github.com: https://github.com/yoloflz101/yoloflz/blob/main/README.md modsecurity.org: https://modsecurity.org/20241011/about-cve-2024-46292-2024-october/