Uploaded image for project: 'Confluence Data Center'
  1. Confluence Data Center
  2. CONFSERVER-8978

Vulnerability against DoS attack via labels

    XMLWordPrintable

Details

    Description

      Description:
      When you give more labels to a content, then Confluence split up the user input on spaces, and then make az SQL query against each word (or something like this).

      Exploit:
      Giving x thousand characters (depends on the machine) separated by space as label results the system is breaking down.

      Attachments

        Issue Links

          Activity

            People

              sleberrigaud Samuel Le Berrigaud
              b1e07ee35f09 Gergely Hodicska
              Votes:
              2 Vote for this issue
              Watchers:
              1 Start watching this issue

              Dates

                Created:
                Updated:
                Resolved: