A vulnerability has been found in AMPPS 2.7 and classified as problematic. Affected by this vulnerability is an unknown functionality of the component Encryption Passphrase Handler. The manipulation leads to denial of service. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. Upgrading to version 4.0 is able to address this issue. It is recommended to upgrade the affected component. The associated identifier of this vulnerability is VDB-252679. NOTE: The vendor explains that AMPPS 4.0 is a complete overhaul and the code was re-written.
References
Link | Resource |
---|---|
https://fitoxs.com/vuldb/15-exploit-perl.txt | Exploit Third Party Advisory |
https://vuldb.com/?ctiid.252679 | Permissions Required Third Party Advisory |
https://vuldb.com/?id.252679 | Permissions Required Third Party Advisory |
Configurations
History
16 Feb 2024, 18:59
Type | Values Removed | Values Added |
---|---|---|
First Time |
Softaculous ampps
Softaculous |
|
References | () https://fitoxs.com/vuldb/15-exploit-perl.txt - Exploit, Third Party Advisory | |
CPE | cpe:2.3:a:softaculous:ampps:*:*:*:*:*:*:*:* |
10 Feb 2024, 01:21
Type | Values Removed | Values Added |
---|---|---|
References | () https://fitoxs.com/vuldb/15-exploit-perl.txt - Exploit | |
References | () https://vuldb.com/?ctiid.252679 - Permissions Required, Third Party Advisory | |
References | () https://vuldb.com/?id.252679 - Permissions Required, Third Party Advisory | |
CPE | cpe:2.3:a:ampps:ampps:*:*:*:*:*:*:*:* | |
First Time |
Ampps ampps
Ampps |
|
CVSS |
v2 : v3 : |
v2 : 5.0
v3 : 7.5 |
02 Feb 2024, 21:13
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-02-02 19:15
Updated : 2024-05-17 02:35
NVD link : CVE-2024-1189
Mitre link : CVE-2024-1189
CVE.ORG link : CVE-2024-1189
JSON object : View
Products Affected
softaculous
- ampps
CWE
CWE-404
Improper Resource Shutdown or Release