Digiwin EasyFlow GP Denial-of-Service Vulnerability
Vulnerability
A denial-of-service vulnerability has been identified in Digiwin's EasyFlow GP application, specifically in versions 5.8.8.3 prior to 5.8.11.1.0810112, as well as in the 8.1.x series up to 8.1.1.2, and in versions 5.7.x through 5.7.7.2. This vulnerability allows unauthenticated remote attackers to send specific requests that disrupt web service availability.
Impact
Exploitation of this vulnerability leads to a denial-of-service condition, causing a disruption of the web service.
Remediation
Users are advised to update EasyFlow GP version 5.8.x to 5.8.11.1.081013 or later, and to update version 8.1.x to 8.1.1.3 or later. For version 5.7.x, users should upgrade to an unaffected version or install the available patch.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
