CVE-2023-28456
HIGHDescription
An issue was discovered in Technitium through 11.0.2. It enables attackers to launch amplification attacks (3 times more than other "golden model" software like BIND) and cause potential DoS.
Is your site exposed to CVE-2023-28456?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| technitium | dnsserver |
References
Frequently Asked Questions
What is CVE-2023-28456? +
How severe is CVE-2023-28456? +
What products are affected by CVE-2023-28456? +
How do I check if I'm vulnerable to CVE-2023-28456? +
Related Vulnerabilities
QTI Neon is a minimal, game-agnostic, relay-based UDP multiplayer protocol library. In version 1.0.0, the relay's handleReconnectRequest forwards RECONNECT_REQUEST packets …
Possible External Service Interaction attack in iManager has been discovered in OpenText™ iManager 3.2.6.0000.
Technitium 11.5.3 allows remote attackers to cause a denial of service (bandwidth amplification) because the DNSBomb manipulation causes accumulation of …
An issue was discovered in Technitium through 11.0.2. The forwarding mode enables attackers to create a query loop using Technitium …
IBM MQ 9.2 LTS, 9.3 LTS, and 9.3 CD Internet Pass-Thru could allow a remote user to cause a denial …
It was not possible to govern the rate at which the broker would respond to an echo flow, enabling an …