← Back

CVE-2020-11650

nvd nist
Published: Apr 8, 2020Modified: Nov 21, 2024

JSON object

Loading...
7.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Exploitability: 3.9 / Impact: 3.6
Source: NVD

Description

An issue was discovered in iXsystems FreeNAS (and TrueNAS) 11.2 before 11.2-u8 and 11.3 before 11.3-U1. It allows a denial of service. The login authentication component has no limits on the length of an authentication message or the rate at which such messages are sent.

Affected (36)

2 products
Freenas Firmware
Truenas Firmware
Configuration A
18 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Ixsystems
Version 11.2
Version 11.2 u1
Version 11.2 u2.1
Version 11.2 u2
Version 11.2 u3
Version 11.2 u4.1
Version 11.2 u4
Version 11.2 u5.1
Version 11.2 u5
Version 11.2 u6.1
Version 11.2 u6
Version 11.2 u7
Version 11.3
Version 11.3 alpha1
Version 11.3 alpha2
Version 11.3 beta1
Version 11.3 rc1
Version 11.3 rc2
Running on/withPlatform Versions
Ixsystems
Freenas
All versions
Configuration B
18 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Ixsystems
Version 11.2
Version 11.2 u1
Version 11.2 u2.1
Version 11.2 u2
Version 11.2 u3
Version 11.2 u4.1
Version 11.2 u4
Version 11.2 u5.1
Version 11.2 u5
Version 11.2 u6.1
Version 11.2 u6
Version 11.2 u7
Version 11.3
Version 11.3 alpha1
Version 11.3 alpha2
Version 11.3 beta1
Version 11.3 rc1
Version 11.3 rc2
Running on/withPlatform Versions
Ixsystems
Truenas
All versions

References (4)

Source: cve@mitre.org
PatchThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.