vendor:
NetBak Replicator
by:
Yair Rodríguez Aparicio
7.5
CVSS
HIGH
Denial of Service
119
CWE
Product Name: NetBak Replicator
Affected Version From: 4.5.6.0607
Affected Version To: 4.5.6.0607
Patch Exists: Yes
Related CWE: N/A
CPE: a:qnap:netbak_replicator:4.5.6.0607
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: Windows XP
2018
QNAP NetBak Replicator 4.5.6.0607 Denial of Service (PoC)
A buffer overflow vulnerability exists in QNAP NetBak Replicator 4.5.6.0607, which can be triggered by sending a specially crafted string of 5000 'A' characters to the 'Dirección URL WebDAV' field. This can cause the application to crash.
Mitigation:
Upgrade to the latest version of QNAP NetBak Replicator.