vendor:
QtWeb
by:
PoisonCode
7,5
CVSS
HIGH
Remote DoS/Crash
119
CWE
Product Name: QtWeb
Affected Version From: 3.3
Affected Version To: 3.3
Patch Exists: YES
Related CWE: N/A
CPE: a:qtweb:qtweb
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows
2010
QtWeb 3.3 Remote DoS/Crash Exploit
QtWeb 3.3 is vulnerable to a remote denial of service attack. An attacker can send a specially crafted HTML file to the victim, which will cause the application to crash when opened. This vulnerability is due to a boundary error when handling HTML files. This can be exploited to cause a denial of service condition.
Mitigation:
Upgrade to the latest version of QtWeb 3.3 or later.