vendor:
One Search
by:
0xB9
2.1
CVSS
LOW
Denial of Service
400
CWE
Product Name: One Search
Affected Version From: 1.1.0.0
Affected Version To: 1.1.0.0
Patch Exists: NO
Related CWE: N/A
CPE: microsoft:one_search
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: Windows 10
2018
One Search 1.1.0.0 – Denial of Service (PoC)
Run the python script, it will create a new file 'PoC.txt'. Copy the text from the generated PoC.txt file to clipboard and paste the text in the search bar and click search. App will now crash.
Mitigation:
Ensure that the application is not vulnerable to buffer overflow attacks.