Perforce Gliffy
cpe:2.3:a:perforce:gliffy:*:*:*:*:*:*:*
- < 4.14.0-7
A vulnerability exists in Perforce Gliffy Online versions prior to 4.14.0-7, where the sign-up workflow lacks proper rate limiting. This deficiency allows attackers to enumerate valid user email addresses and potentially perform a denial-of-service attack on the server.
Exploitation of this vulnerability could lead to unauthorized email enumeration and potential denial-of-service conditions on the server.
Users can upgrade to Gliffy version 4.14.0-7 or later to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.