vendor:
ChaosPro
by:
SecurityChops
5.5
CVSS
MEDIUM
Buffer Overflow
119
CWE
Product Name: ChaosPro
Affected Version From: 2.0
Affected Version To: 2.0
Patch Exists: YES
Related CWE: CVE-2019-14092
CPE: a:chaos-software:chaospro:2.0
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: Windows
2019
ChaosPro 2.0
ChaosPro 2.0 is vulnerable to a buffer overflow vulnerability due to improper bounds checking of user-supplied input. An attacker can exploit this vulnerability by sending a specially crafted payload to the application, which can lead to arbitrary code execution.
Mitigation:
Upgrade to the latest version of ChaosPro 2.0