CVSS v3
7.5
HIGH
EPSS Score
81.8%
exploit probability
CISA KEV
No
known exploited
Exploitation
—
SSVC status
Lighttpd 1.4.56 through 1.4.58 allows a remote attacker to cause a denial of service (CPU consumption from stuck connections) because connection_read_header_more in connections.c has a typo that disrupts use of multiple read operations on large headers.
Lighttpd 1.4.56 through 1.4.58 allows a remote attacker to cause a denial of service (CPU consumption from stuck connections) because connection_read_header_more in connections.c has a typo that disrupts use of multiple read operations on large headers.
Active exploitation of CVE-2022-30780 has not been confirmed. The EPSS score is 81.8%, indicating the estimated probability of exploitation in the next 30 days.
CVE-2022-30780 has a CVSS v3 base score of 7.5 (HIGH severity).
Use isMalicious to check if any of your IPs or domains are associated with this vulnerability's IOCs.
Ranked by exploit probability (EPSS).