7.5
CVSSv3

CVE-2023-50455

Published: 10/12/2023 Updated: 13/12/2023
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

An issue exists in Zammad prior to 6.2.0. Due to lack of rate limiting in the "email address verification" feature, an attacker could send many requests for a known address to cause Denial Of Service (generation of many emails, which would also spam the victim).

Vulnerable Product Search on Vulmon Subscribe to Product

zammad zammad 6.1.0

zammad zammad 6.2.0