vendor:
SpotAuditor
by:
Sinem Şahin
7.5
CVSS
HIGH
Denial Of Service
400
CWE
Product Name: SpotAuditor
Affected Version From: 5.3.5
Affected Version To: 5.3.5
Patch Exists: NO
Related CWE: N/A
CPE: a:nsauditor:spotauditor
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: Windows 7 x64
2021
SpotAuditor 5.3.5 – ‘multiple’ Denial Of Service (PoC)
This exploit is for SpotAuditor 5.3.5. It is a Denial of Service vulnerability which can be triggered by copying a large amount of data into the 'Name' or 'Key' field when registering the software. This will cause the application to crash.
Mitigation:
The user should not paste large amounts of data into the 'Name' or 'Key' field when registering the software.