Vulnerabilities > CVE-2023-6841 - Unspecified vulnerability in Redhat Keycloak and Single Sign-On

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
HIGH
network
low complexity
redhat

Summary

A denial of service vulnerability was found in keycloak where the amount of attributes per object is not limited,an attacker by sending repeated HTTP requests could cause a resource exhaustion when the application send back rows with long attribute values.

Vulnerable Configurations

Part Description Count
Application
Redhat
2