CVE-2021-25829
01.03.2021, 16:15
An improper binary stream data handling issue was found in the [core] module of ONLYOFFICE DocumentServer v4.0.0-9-v5.6.3. Using this bug, an attacker is able to produce a denial of service attack that can eventually shut down the target server.Enginsight
Vendor | Product | Version |
---|---|---|
onlyoffice | document_server | 4.0.0-9 ≤ 𝑥 ≤ 5.6.3 |
𝑥
= Vulnerable software versions
References