vendor:
EzServer
by:
modpr0be
7.5
CVSS
HIGH
Stack Overflow
121
CWE
Product Name: EzServer
Affected Version From: 6
Affected Version To: 6.4
Patch Exists: NO
Related CWE:
CPE: a:ezhometech:ezserver:6.4
Platforms Tested: Windows
2012
Ezhometech EzServer <=6.4 Stack Overflow Vulnerability
Buffer overflow condition exist in URL handling, sending long GET request will cause server process to exit and may allow malicious code injection. Further research found that the application does not care about the HTTP method, so that by sending long characters will make the program crash.
Mitigation:
Unknown