CVE-2021-38465

HIGH

versiondog < 8.0.0 - Denial of Service via Webinstaller Resource Consumption

Title source: llm
STIX 2.1

Description

The webinstaller is a Golang web server executable that enables the generation of an Auvesy image agent. Resource consumption can be achieved by generating large amounts of installations, which are then saved without limitation in the temp folder of the webinstaller executable.

References (1)

Core 1
Core References
Patch, Third Party Advisory, US Government Resource x_refsource_confirm
https://us-cert.cisa.gov/ics/advisories/icsa-21-292-01

Scores

CVSS v3 8.0
EPSS 0.0079
EPSS Percentile 51.4%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H

Details

CWE
CWE-400 CWE-770
Status published
Products (1)
auvesy/versiondog < 8.0.0
Published Oct 22, 2021
Tracked Since Feb 18, 2026