Password denial of service

Description

During the scan, Kayran managed to find an Password denial of service (DoS) vulnerability.
Password denial of service is a security vulnerability in web applications that can make the website unavailable or unresponsive by sending a very long password to the server (usually 1M+ characters but it’s different in each case).

This might lead to the website to become temporarily/indefinitely unavailable or unresponsive. These types of attacks are called DoS (Denial-of-Service) attacks. They are named this way because the purpose of these attacks is to prevent service from being provided.

Recommendation

This can be fixed by presetting the maximum character length of the field to which the desired password will be inserted to.

References

https://owasp.org/www-community/attacks/Denial_of_Service

< Return to all Vulnerabilities

SQLI to RCE

How to preform SQLI TO RCE? One of the most interesting and important things about any site is the database. So, it’s important to protect

Read More »

What is Kayran

Kayran scanner is helping all businesses, both SMBs and enterprises, to test their online assets and products for over 9000 vulnerabilities.Kayran’s mission is to make

Read More »

HAR Files

In this article, I’ll talk and explain about HAR Files, so if you don’t know what they are, or, what do we use them for,

Read More »