Vulnerabilities > CVE-2020-8892 - Unspecified vulnerability in Misp
Attack vector
NETWORK Attack complexity
HIGH Privileges required
NONE Confidentiality impact
HIGH Integrity impact
HIGH Availability impact
HIGH Summary
An issue was discovered in MISP before 2.4.121. It did not consider the HTTP PUT method when trying to block a brute-force series of invalid requests.
Vulnerable Configurations
References
- https://github.com/MISP/MISP/commit/934c82819237b4edf1da64587b72a87bec5dd520
- https://github.com/MISP/MISP/commit/934c82819237b4edf1da64587b72a87bec5dd520
- https://github.com/MISP/MISP/commit/c1a0b3b2809b21b4df8c1efbc803aff700e262c3
- https://github.com/MISP/MISP/commit/c1a0b3b2809b21b4df8c1efbc803aff700e262c3
- https://github.com/MISP/MISP/compare/v2.4.120...v2.4.121
- https://github.com/MISP/MISP/compare/v2.4.120...v2.4.121