Impact
If a possible attacker sends an URL the server runs into an php error, next time trying to load this dashboard. It is possible to destroy the start page of a user.
Patches
Before saving the dashboard, we check the provided layout_class.
References
N°6617 - Fix "Denial of Service" vulnerability
Impact
If a possible attacker sends an URL the server runs into an php error, next time trying to load this dashboard. It is possible to destroy the start page of a user.
Patches
Before saving the dashboard, we check the provided layout_class.
References
N°6617 - Fix "Denial of Service" vulnerability