vendor:
Product Key Explorer
by:
SajjadBnd
7.5
CVSS
HIGH
Denial of Service (DoS) Local
400
CWE
Product Name: Product Key Explorer
Affected Version From: 4.2.0.0
Affected Version To: 4.2.0.0
Patch Exists: YES
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: Windows 10 - Pro
2019
Product Key Explorer 4.2.0.0 – ‘Name’ Denial of Service (POC)
Product Key Explorer is a software program that allows users to recover product keys for software installed on their local and network computers. A denial of service vulnerability exists in Product Key Explorer 4.2.0.0, where a specially crafted file can cause a denial of service when the file is pasted into the 'Name' field. An attacker can exploit this vulnerability to cause a denial of service condition.
Mitigation:
Upgrade to the latest version of Product Key Explorer.