Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Telligent Community Server 2.1 and earlier allows remote attackers to cause a denial of service (bandwidth or thread consumption) via pingback service calls with a source URI that corresponds to (1) a large file, which triggers a long download session without a timeout constraint; or (2) a file with a binary content type, which is downloaded even though it cannot contain usable pingback data.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Telligent Community Server源URI pingback服务调用拒绝服务攻击漏洞
Vulnerability Description
Telligent Community Server 2.1及之前版本允许远程攻击者借助带有源URI的pingback服务调用,来引起拒绝服务攻击(带宽或thread损耗)。该源URI与(1)一个大的文件(会触发一个没有暂停限制的过长的下载会话)和(2)带有二进制的内容形式的文件相一致(即使没有包含有用的pingback数据,它也会被下载)。
CVSS Information
N/A
Vulnerability Type
N/A