Improper Handling of Length Parameter Inconsistency in OAS Platform - CVE-2024-24976
Published: April 8, 2024
OAS Platform
Open Automation Software
Description
The vulnerability allows a remote user to perform a denial of service (DoS) attack.
The vulnerability exists due to improper handling of length parameter inconsistency in the OAS Engine File Data Source Configuration functionality. A remote administrator can pass specially crafted input to the application and perform a denial of service (DoS) attack.