vendor:
openVSP
by:
L0RD
N/A
CVSS
N/A
Denial of Service
CWE
Product Name: openVSP
Affected Version From: 3.16.1
Affected Version To: 3.16.1
Patch Exists: No
Related CWE:
CPE:
Platforms Tested: Windows 10
2018
NASA openVSP 3.16.1 – Denial of Service (PoC)
The exploit creates a payload of 5000 bytes and writes it to a file named 'poc.txt'. When the payload is pasted into the 'name' field in the 'pod' section of the 'Geom browser' in the 'vsp.exe' application, it causes a crash.
Mitigation:
No information provided