← back
CVE-2019-19886

CVE-2019-19886

EPSS 2.5%
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS EPSS 2.5%KEV nãoPoC Nuclei Metasploit Patch referenciado
Lifecycle
21 Jan 2020Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Trustwave ModSecurity 3.0.0 through 3.0.3 allows an attacker to send crafted requests that may, when sent quickly in large volumes, lead to the server becoming slow or unresponsive (Denial of Service) because of a flaw in Transaction::addRequestHeader in transaction.cc.
Affected products
n/a · n/a

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →