Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The mod_pubsub module (mod_pubsub.erl) in ejabberd 2.1.8 and 3.0.0-alpha-3 allows remote authenticated users to cause a denial of service (infinite loop) via a stanza with a publish tag that lacks a node attribute.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
ejabberd拒绝服务漏洞
Vulnerability Description
Ejabberd是一款免费、开源且基于Jabber/XMPP协议的即时通讯服务器,它支持跨平台、容错、集群等。 ejabberd 2.1.9之前的版本中存在拒绝服务漏洞。该漏洞源于当解析某些节的时候mod_pubsub模块中的一个错误,攻击者可利用该漏洞借助特制的"<publish>"节触发死循环。
CVSS Information
N/A
Vulnerability Type
N/A