vendor:
My Notes Safe
by:
Geovanni Ruiz
7.5
CVSS
HIGH
Denial of Service
400
CWE
Product Name: My Notes Safe
Affected Version From: 5.3
Affected Version To: 5.3
Patch Exists: NO
Related CWE: N/A
CPE: 689971781
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: iOS
2021
My Notes Safe 5.3 – Denial of Service (PoC)
Color Notes is vulnerable to a DoS condition when a long list of characters is being used when creating a note. Successful exploitation will cause the application to stop working. The exploit has been tested against iOS 14.2.
Mitigation:
Ensure that the application is not vulnerable to DoS attacks by validating user input.