vendor:
Sticky Notes Widget
by:
Geovanni Ruiz
CVSS
HIGH
Denial of Service
N/A
CWE
Product Name: Sticky Notes Widget
Affected Version From: 3.0.6
Affected Version To: 3.0.6
Patch Exists: N/A
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: iOS
2021
Sticky Notes Widget Version 3.0.6 – Denial of Service (PoC)
Color Notes is vulnerable to a DoS condition when a long list of characters is being used when creating a note. Successful exploitation will cause the application to stop working. The exploit has been tested against iOS 14.2.
Mitigation:
N/A