CVE-2020-13574: Null Pointer Dereference
A denial-of-service vulnerability exists in the WS-Security plugin functionality of Genivia gSOAP 2.8.107. A specially crafted SOAP request can lead to denial of service. An attacker can send an HTTP request to trigger this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-13574?
CVE-2020-13574 is a denial-of-service vulnerability in the WS-Security plugin functionality of Genivia gSOAP 2.8.107.
How does CVE-2020-13574 affect Genivia gSOAP?
CVE-2020-13574 affects Genivia gSOAP version 2.8.107. It can lead to denial of service when a specially crafted SOAP request is sent.
How can an attacker exploit CVE-2020-13574?
An attacker can exploit CVE-2020-13574 by sending a specially crafted HTTP request to trigger the denial-of-service vulnerability.
What is the severity of CVE-2020-13574?
CVE-2020-13574 has a severity rating of 7.5 (high).
How can I fix the CVE-2020-13574 vulnerability in Genivia gSOAP?
To fix the CVE-2020-13574 vulnerability in Genivia gSOAP, update to a version that is not affected by the vulnerability.