vendor:
Integard
by:
purpl3f0xsecur1ty
9.8
CVSS
CRITICAL
Buffer Overflow
119
CWE
Product Name: Integard
Affected Version From: Pro 2.2.0.9026 / Home 2.0.0.9021
Affected Version To: Unknown (not provided in the text)
Patch Exists: NO
Related CWE: CVE-2019-16702
CPE: Unknown (not provided in the text)
Platforms Tested: Windows XP / Win7 / Win10
2019
Integard Pro NoJs 2.2.0.9026 โ Remote Buffer Overflow
Integard fails to sanitize input to the 'NoJs' parameter in an HTTP POST request, resulting in a stack buffer overflow that overwrites the instruction pointer, leading to remote code execution.
Mitigation:
Unknown (not provided in the text)