Denial of Service Vulnerability in DotCMS by DotCMS
CVE-2022-37034
5.3MEDIUM
What is CVE-2022-37034?
The vulnerability in DotCMS versions 5.x-22.06 allows multiple calls to the TempResource, which can lead to excessive requests for large file downloads. As the server processes these repeated demands, it experiences request-thread exhaustion in Tomcat, resulting in an inability to handle additional requests efficiently. This can lead to service disruptions for legitimate users, affecting overall server availability and functionality.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
References
CVSS V3.1
Score:
5.3
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved
