Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qpw6-3qr8-fmwg

Опубликовано: 05 фев. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 8.4
CVSS3: 9.8

Описание

Nsauditor 3.0.28 and 3.2.1.0 contains a buffer overflow vulnerability in the DNS Lookup tool that allows attackers to execute arbitrary code by overwriting memory. Attackers can craft a malicious DNS query payload to trigger a three-byte overwrite, bypass ASLR, and execute shellcode through a carefully constructed exploit.

Nsauditor 3.0.28 and 3.2.1.0 contains a buffer overflow vulnerability in the DNS Lookup tool that allows attackers to execute arbitrary code by overwriting memory. Attackers can craft a malicious DNS query payload to trigger a three-byte overwrite, bypass ASLR, and execute shellcode through a carefully constructed exploit.

EPSS

Процентиль: 16%
0.00052
Низкий

8.4 High

CVSS4

9.8 Critical

CVSS3

Дефекты

CWE-121

Связанные уязвимости

CVSS3: 9.8
nvd
3 дня назад

Nsauditor 3.0.28 and 3.2.1.0 contains a buffer overflow vulnerability in the DNS Lookup tool that allows attackers to execute arbitrary code by overwriting memory. Attackers can craft a malicious DNS query payload to trigger a three-byte overwrite, bypass ASLR, and execute shellcode through a carefully constructed exploit.

EPSS

Процентиль: 16%
0.00052
Низкий

8.4 High

CVSS4

9.8 Critical

CVSS3

Дефекты

CWE-121