vendor:
ShareAlarmPro
by:
T3jv1l
7.5
CVSS
HIGH
Denial of Service
CWE
Product Name: ShareAlarmPro
Affected Version From: ShareAlarmPro 2.1.4
Affected Version To: ShareAlarmPro 2.1.4
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested: Windows 7 SP1 x86
2018
ShareAlarmPro 2.1.4 – Denial of Service (PoC)
This exploit creates a file with a large payload, causing the ShareAlarmPro software to crash when attempting to open it. It is a proof-of-concept exploit that demonstrates the vulnerability in the software. The vulnerability allows an attacker to cause a denial of service condition by sending a specially crafted payload to the software.
Mitigation:
Apply the latest patch or update from the vendor to fix the vulnerability. Avoid opening files from untrusted sources.