CVE-2023-49551

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Jan 2, 2024
Updated: Jan 5, 2024

Summary

CVE-2023-49551 is a newly disclosed vulnerability affecting Cesanta mjs 2.20.0. An attacker can exploit this issue by sending specially crafted data to the mjs_op_json_parse function in the msj.c file, leading to a denial of service (DoS) condition. The vulnerability allows remote attackers to cause the application to crash or consume excessive resources, potentially disrupting services and causing downtime. Organizations running mjs 2.20.0 should apply the available patch or update as soon as possible to mitigate the risk of a successful attack.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share