CVE-2019-13126 is a high-severity integer overflow vulnerability affecting NATS Server versions prior to 2.0.2, which allows a remote attacker to crash the server through a crafted request, potentially requiring prior authentication. With a CVSS score of 7.5, this vulnerability has a network attack vector and low attack complexity, leading to a complete loss of availability. There is no evidence of active exploitation, nor are there public exploit codes available on platforms like Metasploit or ExploitDB. Furthermore, community discussion and media coverage for this CVE are currently absent.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 2.0.2CPE matchmatch criteria | cpe:2.3:a:linuxfoundation:nats-server:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.