CVE-2020-18392: Medium severity mjs vulnerability
Published May 28, 2021
·Updated
Stack overflow vulnerability in parsearray Cesanta MJS 1.20.1, allows remote attackers to cause a Denial of Service (DoS) via a crafted file.
Affected Software
1 affected component
Cesanta mJS=1.20.1
Event History
May 28, 2021
CVE Published
via MITRE·08:37 PM
Data Sourced
via MITRE·08:37 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2020-18392?
CVE-2020-18392 is classified as a Denial of Service (DoS) vulnerability.
2
How does CVE-2020-18392 allow attackers to exploit the system?
CVE-2020-18392 allows remote attackers to cause a denial of service by exploiting a stack overflow in the parse_array function.
3
Which version of Cesanta MJS is affected by CVE-2020-18392?
CVE-2020-18392 affects Cesanta MJS version 1.20.1.
4
What are the potential impacts of CVE-2020-18392 on services?
The potential impact of CVE-2020-18392 includes service outages and unavailability due to the denial of service.
5
How can I mitigate the risks associated with CVE-2020-18392?
Mitigation for CVE-2020-18392 can be achieved by updating Cesanta MJS to a version that addresses this vulnerability.