CyberRota Analysis
AI analysis pending.
CVE
CVE-2014-2743
Severity
HIGH
CVSS
7.8
EPSS
1.94%
Original NVD Description
plugins/mod_compression.lua in Lightwitch Metronome through 3.4 does not properly restrict the processing of compressed XML elements, which allows remote attackers to cause a denial of service (resource consumption) via a crafted XMPP stream, aka an "xmppbomb" attack.