vendor:
a-Mac Address Change
by:
Rafael Pedrero
7.8
CVSS
HIGH
Denial of Service (DoS) Local Buffer Overflow
119
CWE
Product Name: a-Mac Address Change
Affected Version From: 5.4
Affected Version To: 5.4
Patch Exists: NO
Related CWE: N/A
CPE: a:amac_paqtool:a-mac_address_change
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: Windows XP SP3
2019
a-Mac Address Change v5.4 – Denial of Service (PoC)
When a specially crafted string of 212 'A' characters is copied to the clipboard and pasted into the 'Your Name', 'Your Company', and 'Register Code' fields of the 'Amac Register Form' page, a denial of service condition occurs.
Mitigation:
Ensure that input validation is performed on all user-supplied data.