First published: Fri Feb 17 2023(Updated: )
An issue in Php-Fusion v9.03.90 fixed in v9.10.00 allows authenticated attackers to cause a Distributed Denial of Service via the Polling feature.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Php-fusion Php-fusion | >=9.03.90<9.10.00 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-3172 is a vulnerability in Php-Fusion v9.03.90 that was fixed in v9.10.00.
Authenticated attackers can exploit CVE-2021-3172 by causing a Distributed Denial of Service via the Polling feature.
CVE-2021-3172 has a severity rating of 8.1 (high).
To fix CVE-2021-3172, upgrade Php-Fusion to version 9.10.00 or later.
More information about CVE-2021-3172 can be found in the following references: [Link 1](https://github.com/PHPFusion/PHPFusion/commit/7b8df6925cc7cfd8585d4f34d9120ff3a2e5753e), [Link 2](https://github.com/PHPFusion/PHPFusion/issues/2351).