Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Prosody before 0.8.1 does not properly detect recursion during entity expansion, which allows remote attackers to cause a denial of service (memory and CPU consumption) via a crafted XML document containing a large number of nested entity references, a similar issue to CVE-2003-1564.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Prosody嵌入XML实体拒绝服务漏洞
Vulnerability Description
Prosody 0.8.1之前版本在实体扩展过程中不能正确检测递归。远程攻击者可借助嵌入XML实体导致拒绝服务(内存和CPU消耗)。
CVSS Information
N/A
Vulnerability Type
N/A