CVE-2021-33840
The server in Luca through 1.1.14 allows remote attackers to cause a denial of service (insertion of many fake records related to COVID-19) because Phone Number data lacks a digital signature.
- Affected products
- Luca
- Luca-app Luca
- ≤ 1.1.14
- CVSS 3.1
- 7.5 HIGH
- EPSS
- 0.9% (57th percentile)
- Weakness
- CWE-345
- NVD status
- Modified
- Published
- 2021-06-03
CVE-2021-33840 at NVD
1 known exploit for CVE-2021-33840
Proof-of-concept code and exploit modules indexed by Sploitus