← Back to browse · API

CVE-2024-2758

Severity
MEDIUM
CVSS
6.3
EPSS
0.7275
Risk score
50.66
CISA KEV
No
PoC
No
Published
2024-04-03
Modified
2025-02-13
First seen
2026-08-07
Aliases
EUVD-2024-27702, GHSA-5X2G-C9GV-XWQ2
Products
Tempesta:Tempesta FW, Tempesta:Tempesta FW 0.7.0 ≤0.7.0
Sources
euvd EUVD-2024-27702

Description

Tempesta FW rate limits are not enabled by default. They are either set too large to capture empty CONTINUATION frames attacks or too small to handle normal HTTP requests appropriately.

References