Описание
Nsauditor 3.2.0.0 contains a denial of service vulnerability in the registration name input field that allows attackers to crash the application. Attackers can create a malicious payload of 1000 bytes of repeated characters to trigger an application crash when pasted into the registration name field.
Ссылки
- Product
- ExploitThird Party AdvisoryVDB Entry
- Third Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 3.2.7 (исключая)
cpe:2.3:a:nsasoft:nsauditor:*:*:*:*:*:*:*:*
EPSS
Процентиль: 36%
0.00455
Низкий
7.5 High
CVSS3
Дефекты
CWE-120
Связанные уязвимости
CVSS3: 7.5
github
5 месяцев назад
Nsauditor 3.2.0.0 contains a denial of service vulnerability in the registration name input field that allows attackers to crash the application. Attackers can create a malicious payload of 1000 bytes of repeated characters to trigger an application crash when pasted into the registration name field.
EPSS
Процентиль: 36%
0.00455
Низкий
7.5 High
CVSS3
Дефекты
CWE-120