GeSHi 1.0.x - XML Parsing Remote Denial of Service

EDB-ID:

32596




Platform:

Multiple

Date:

2008-11-20


source: https://www.securityfocus.com/bid/32377/info

GeSHi is prone to a remote denial-of-service vulnerability.

Remote attackers can exploit this issue to cause the vulnerable application to enter an infinite loop, consuming excessive resources.

This issue affects versions prior to GeSHi 1.0.8. 

The following example exploit is available:

<