vendor:
Cuckoo Clock
by:
boku
7.5
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: Cuckoo Clock
Affected Version From: 5
Affected Version To: 5
Patch Exists: NO
Related CWE:
CPE: a:parallaxis:cuckoo_clock:5.0
Platforms Tested: Windows 10 (32-bit)
2020
Cuckoo Clock 5.0 – Buffer Overflow
The Cuckoo Clock version 5.0 is vulnerable to a buffer overflow. By providing a specially crafted input in the 'New Alarm' textbox, an attacker can overwrite the EIP and ESP registers, allowing for the execution of arbitrary code.
Mitigation:
To mitigate this vulnerability, users are advised to update to a patched version of Cuckoo Clock or apply any security patches provided by the vendor.