vendor:
Nsauditor Network Security Auditor
by:
0xMoHassan
7.5
CVSS
HIGH
Denial of Service (DoS) Local
N/A
CWE
Product Name: Nsauditor Network Security Auditor
Affected Version From: 3.2.0.0
Affected Version To: 3.2.0.0
Patch Exists: YES
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: Windows XP - SP3
2020
Nsauditor 3.2.0.0 – ‘Name’ Denial of Service (PoC)
Nsauditor Network Security Auditor is a powerful network security tool designed to scan networks and hosts for vulnerabilities, and to provide security alerts. An attacker can exploit this vulnerability by running the python script, creating a new file 'POC.txt', running Nsauditor, pasting the content of POC.txt into the Field: 'Name' and clicking 'ok', resulting in a denial of service.
Mitigation:
Update to the latest version of Nsauditor Network Security Auditor.