vendor:
Angry IP Scanner
by:
Mr Winst0n
7.8
CVSS
HIGH
Denial of Service (DoS)
119
CWE
Product Name: Angry IP Scanner
Affected Version From: 3.5.3
Affected Version To: 3.5.3
Patch Exists: YES
Related CWE: N/A
CPE: a:angryziber:angry_ip_scanner
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: Kali Linux
2018
Angry IP Scanner for Linux 3.5.3 – Denial of Service (PoC)
A buffer overflow vulnerability in Angry IP Scanner for Linux 3.5.3 can be exploited by malicious people to cause a DoS (Denial of Service). The vulnerability is caused due to a boundary error when handling user supplied data. This can be exploited to cause a stack-based buffer overflow via an overly long, specially crafted string passed to the application. Successful exploitation of this vulnerability may allow execution of arbitrary code.
Mitigation:
Upgrade to the latest version of Angry IP Scanner for Linux 3.5.3