vendor:
SpotIE Internet Explorer Password Recovery
by:
Emilio Revelo
7.5
CVSS
HIGH
Denial of Service (DoS)
CWE
Product Name: SpotIE Internet Explorer Password Recovery
Affected Version From: 2.9.2005
Affected Version To: 2.9.2005
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested: Windows 10 Pro x64
2019
SpotIE Internet Explorer Password Recovery 2.9.5 – ‘Key’ Denial of Service (DoS)
This exploit allows an attacker to cause a denial of service (crash) in SpotIE Internet Explorer Password Recovery 2.9.5. By providing a long string as the 'Key' parameter, the application crashes. This vulnerability can be exploited by running a Perl script provided by the author and following the steps outlined in the script.
Mitigation:
The vendor has not provided a patch or mitigation for this vulnerability.