vendor:
PingMaster Pro
by:
Ismael Nava
7.5
CVSS
HIGH
Denial of Service
400
CWE
Product Name: PingMaster Pro
Affected Version From: 2.1
Affected Version To: 2.1
Patch Exists: YES
Related CWE: N/A
CPE: a:agatasoft:pingmaster_pro:2.1
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: Windows 10 Home x64
2021
AgataSoft PingMaster Pro 2.1 – Denial of Service (PoC)
AgataSoft PingMaster Pro 2.1 is vulnerable to a denial of service attack. An attacker can create a malicious .txt file containing a large number of 'S' characters and then copy the content of the file into the 'Host name' field in the 'Trace Route' option of the program. This will cause the program to crash.
Mitigation:
Ensure that the program is updated to the latest version and that all input is properly validated.