← back
CVE-2022-0968highCWE-190

The microweber application allows large characters to insert in the input field "fist & last name" which can allow attackers to cause a Denial of Service (DoS) via a crafted HTTP request. in microweber/microweber in microweber/microweber

36Vexday Risk Score

Patch soon. It has a working public exploit.

ssvc Attendcvss 7.2epss 3.7%
exploitation probability
3.7%top 11% of all CVEs
observed exploitation
nono source reports it
The microweber application allows large characters to insert in the input field "fist & last name" which can allow attackers to cause a Denial of Service (DoS) via a crafted HTTP request. in microweber/microweber in GitHub repository microweber/microweber prior to 1.2.12.
CVSS:3.0/AV:L/AC:H/PR:H/UI:R/S:C/C:H/I:H/A:H