Vulnerability Details CVE-2020-28873
Fluxbb 1.5.11 is affected by a denial of service (DoS) vulnerability by sending an extremely long password via the user login form. When a long password is sent, the password hashing process will result in CPU and memory exhaustion on the server.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.009
EPSS Ranking 54.1%
CVSS Severity
CVSS v3 Score 7.5
CVSS v2 Score 7.8
Products affected by CVE-2020-28873
-
cpe:2.3:a:fluxbb:fluxbb:1.5.11