Vulnerabilities > CVE-2020-7693 - Improper Handling of Exceptional Conditions vulnerability in Sockjs Project Sockjs

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
PARTIAL
network
low complexity
sockjs-project
CWE-755

Summary

Incorrect handling of Upgrade header with the value websocket leads in crashing of containers hosting sockjs apps. This affects the package sockjs before 0.3.20.