CVE-2004-2297: Medium severity Francisco Burzi PHP-Nuke vulnerability
The Reviews module in PHP-Nuke 6.0 to 7.3 allows remote attackers to cause a denial of service (CPU and memory consumption) via a large, out-of-range score parameter.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2004-2297?
CVE-2004-2297 has a medium severity rating due to its potential for denial of service affecting system performance.
How do I fix CVE-2004-2297?
To mitigate CVE-2004-2297, you should update PHP-Nuke to the latest version that includes a fix for this vulnerability.
Which versions of PHP-Nuke are affected by CVE-2004-2297?
CVE-2004-2297 affects PHP-Nuke versions 6.0 to 7.3, specifically including multiple beta and release candidates.
What type of vulnerability is CVE-2004-2297?
CVE-2004-2297 is classified as a denial of service vulnerability caused by handling large, out-of-range score parameters.
Can CVE-2004-2297 lead to data breaches?
CVE-2004-2297 primarily leads to denial of service, not directly to data breaches, but it may allow attackers to disrupt service availability.