CVE-2021-3172: High severity jenkins vulnerability
Published Feb 17, 2023
·Updated
An issue in Php-Fusion v9.03.90 fixed in v9.10.00 allows authenticated attackers to cause a Distributed Denial of Service via the Polling feature.
Affected Software
1 affected component
PHP-Fusion php-fusion>=9.03.90<9.10.00
Remediation
Event History
Feb 17, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·06:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2021-3172?
CVE-2021-3172 is a vulnerability in Php-Fusion v9.03.90 that was fixed in v9.10.00.
2
How can authenticated attackers exploit CVE-2021-3172?
Authenticated attackers can exploit CVE-2021-3172 by causing a Distributed Denial of Service via the Polling feature.
3
What is the severity of CVE-2021-3172?
CVE-2021-3172 has a severity rating of 8.1 (high).
4
How can I fix CVE-2021-3172?
To fix CVE-2021-3172, upgrade Php-Fusion to version 9.10.00 or later.
5
Where can I find more information about CVE-2021-3172?
More information about CVE-2021-3172 can be found in the following references: [Link 1](https://github.com/PHPFusion/PHPFusion/commit/7b8df6925cc7cfd8585d4f34d9120ff3a2e5753e), [Link 2](https://github.com/PHPFusion/PHPFusion/issues/2351).