CVE Details
Basic Information
| Title |
CVE-2025-48738 |
| Type |
cve |
| Published |
2025-05-23T20:15:25 |
| Last Seen |
2025-05-23T20:19:48 |
CVSS Information
| Base Score |
0.0 () |
| Attack Vector |
|
| Attack Complexity |
|
| Privileges Required |
|
| User Interaction |
|
| Scope |
|
| Confidentiality Impact |
|
| Integrity Impact |
|
| Availability Impact |
|
AI Analysis
| AI Description |
An email flooding vulnerability in StrangeBee TheHive versions 5.2.0 to 5.5.0 before specific patches allows unauthenticated attackers to abuse the password reset feature, potentially leading to email flooding and service disruption. |
| AI Severity |
High |
| Vendor |
StrangeBee |
| Product |
StrangeBee TheHive |
| Affected Version |
5.2.0, 5.3.0, 5.4.0, 5.5.0 |
Additional Information
| CVE List |
CVE-2025-48738 |
| CWE List |
CWE-770 |
| Bulletin Family |
cve |
Description
An e-mail flooding vulnerability in StrangeBee TheHive 5.2.0 before 5.2.16, 5.3.0 before 5.3.11, 5.4.0 before 5.4.10, and 5.5.0 before 5.5.1 allows unauthenticated remote attackers to use the password reset…
CVSS Score Summary
Base Score: %!f(string=#) ()
View Full CVE Details