CVE-2020-10280CWE-239
RVD#2568: Apache server is vulnerable to a DoS
High · published June 24, 2020
What it is
The Apache server on port 80 that host the web interface is vulnerable to a DoS by spamming incomplete HTTP headers, effectively blocking the access to the dashboard.
The record
Technical detail
- CVSS v3.0
- 8.2 · HIGH
- Vector
- CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:H
- CVSS v4.0
- Not supplied
- EPSS
- 0.01178 · 65.5th percentile
- Weakness
- CWE-239 · Failure to Handle Incomplete Element
- Published
- 2020-06-24T05:45Z
EPSS history
Timeline