Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
A lack of rate limiting in the 'forgot password' feature of Zammad v5.1.0 allows attackers to send an excessive amount of reset requests for a legitimate user, leading to a possible Denial of Service (DoS) via a large amount of generated e-mail messages.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Zammad 安全漏洞
Vulnerability Description
Zammad是德国Zammad公司的一套票务管理软件。 Zammad v5.1.0 版本存在安全漏洞,该漏洞源于 忘记密码 功能缺乏速率限制,这使得攻击者可以为合法用户发送过多的重置请求,从而通过大量生成可能导致拒绝服务 (DoS) 的电子邮件消息。
CVSS Information
N/A
Vulnerability Type
N/A