Описание
Cobian Reflector 0.9.93 RC1 contains a denial of service vulnerability that allows attackers to crash the application by overflowing the password input field. Attackers can paste a large 8000-byte buffer into the password field to trigger an application crash during SFTP task configuration.
Ссылки
- Product
- ExploitThird Party Advisory
- Third Party Advisory
- ExploitThird Party Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:cobiansoft:reflector:0.9.93:rc1:*:*:*:*:*:*
EPSS
Процентиль: 2%
0.00013
Низкий
6.2 Medium
CVSS3
5.5 Medium
CVSS3
Дефекты
CWE-120
Связанные уязвимости
CVSS3: 6.2
github
около 2 месяцев назад
Cobian Reflector 0.9.93 RC1 contains a denial of service vulnerability that allows attackers to crash the application by overflowing the password input field. Attackers can paste a large 8000-byte buffer into the password field to trigger an application crash during SFTP task configuration.
EPSS
Процентиль: 2%
0.00013
Низкий
6.2 Medium
CVSS3
5.5 Medium
CVSS3
Дефекты
CWE-120