← Back

CVE-2017-1000048

nvd nist
Published: Jul 17, 2017Modified: May 13, 2026

JSON object

Loading...
7.5
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Exploitability: 3.9 / Impact: 3.6
Source: NVD

Description

the web framework using ljharb's qs module older than v6.3.2, v6.2.3, v6.1.2, and v6.0.4 is vulnerable to a DoS. A malicious user can send a evil request to cause the web framework crash.

Affected (30)

Products: Qs Project: Qs
1 product
Qs
Configuration A
30 vulnerable
Vulnerable SoftwareAffected Versions
Qs Project
Version 1.0.0
Version 1.0.1
Version 1.0.2
Version 1.1.0
Version 1.2.0
Version 1.2.1
Version 2.3.1
Version 2.3.2
Version 2.3.3
Version 2.4.0
Version 2.4.1
Version 2.4.2
Version 3.0.0
Version 3.1.0
Version 4.0.0
Version 5.0.0
Version 5.1.0
Version 5.2.0
Version 5.2.1
Version 6.0.0
Version 6.0.1
Version 6.0.2
Version 6.0.3
Version 6.1.0
Version 6.1.1
Version 6.2.0
Version 6.2.1
Version 6.2.2
Version 6.3.0
Version 6.3.1

References (4)

Source: cve@mitre.org
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory

Timeline

No history available yet.