First published: Tue Oct 31 2023(Updated: )
Uncontrolled resource consumption vulnerability in Cybozu Remote Service 4.1.0 to 4.1.1 allows a remote authenticated attacker to consume huge storage space or cause significantly delayed communication.
Credit: vultures@jpcert.or.jp
Affected Software | Affected Version | How to fix |
---|---|---|
>=4.1.0<4.1.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-46278 is an uncontrolled resource consumption vulnerability in Cybozu Remote Service 4.1.0 to 4.1.1 that allows a remote authenticated attacker to consume huge storage space or cause significantly delayed communication.
CVE-2023-46278 allows a remote authenticated attacker to consume a large amount of storage space or cause delays in communication.
CVE-2023-46278 has a severity rating of 6.5, which is considered medium.
To fix CVE-2023-46278 in Cybozu Remote Service, update to version 4.1.2 or later.
More information about CVE-2023-46278 can be found at the following references: [link1](https://cs.cybozu.co.jp/2023/010657.html), [link2](https://jvn.jp/en/jp/JVN94132951/).