vendor:
GSearch
by:
0xB9
5.5
CVSS
MEDIUM
Denial of Service
CWE
Product Name: GSearch
Affected Version From: 1.0.1.0
Affected Version To: 1.0.1.0
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested: Windows 10
2019
GSearch v1.0.1.0 – Denial of Service (PoC)
The GSearch application version 1.0.1.0 is vulnerable to a denial of service attack. By providing a specially crafted payload to the application, an attacker can cause the application to crash. This can be achieved by copying the payload text from the generated PoC.txt file, pasting it into the search bar of the application, and then clicking on any link.
Mitigation:
The vendor has not released a patch for this vulnerability. To mitigate the risk, users are advised to avoid pasting arbitrary text into the search bar of the GSearch application.