Denial of Service Vulnerability in PHPJabbers Cleaning Business Software
CVE-2023-51327

6.5MEDIUM

Key Information:

Vendor

PHPJabbers

Vendor
CVE Published:
20 February 2025

What is CVE-2023-51327?

The 'Forgot Password' feature in PHPJabbers Cleaning Business Software version 1.0 is vulnerable due to a lack of rate limiting. This oversight allows attackers to harm a legitimate user's account by sending an overwhelming number of email requests. The excessive volume of emails can lead to service disruptions, effectively generating a Denial of Service (DoS) condition. Users and administrators should be aware of this vulnerability and consider implementing protective measures to mitigate potential threats.

References

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.