vendor:
IP Finder
by:
Shubham Singh
7.5
CVSS
HIGH
Denial of Service
400
CWE
Product Name: IP Finder
Affected Version From: 1.5
Affected Version To: 1.5
Patch Exists: YES
Related CWE: N/A
CPE: a:securimport:ip_finder
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: Windows XP Service Pack 3 x86
2018
IP Finder 1.5 – Denial of Service (PoC)
IP Finder 1.5 is vulnerable to a Denial of Service attack. By running the python exploit script, a new file with the name 'exploit.txt' is created. The content of this file is then copied and pasted into the password field of the Search&Config Tool program, resulting in a crash.
Mitigation:
Upgrade to the latest version of IP Finder 1.5