vendor:
Central Management Software
by:
Gionathan 'John' Reale
7.5
CVSS
HIGH
Denial of Service
400
CWE
Product Name: Central Management Software
Affected Version From: 1.4.13
Affected Version To: 1.4.13
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested: Windows 10
2018
Central Management Software v1.4.13 – Denial of Service (PoC)
The Central Management Software v1.4.13 is vulnerable to a Denial of Service (DoS) attack. By sending a specially crafted payload to the 'Password' field in the CMS client program, an attacker can cause the software to crash, resulting in a denial of service condition.
Mitigation:
It is recommended to update to a patched version of the software.