vendor:
SpotAuditor
by:
0xMoHassan
7.5
CVSS
HIGH
Denial of Service (DoS) Local
CWE
Product Name: SpotAuditor
Affected Version From: 5.3.2004
Affected Version To: 5.3.2004
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested: Windows XP - SP3
2020
SpotAuditor 5.3.4 – ‘Name’ Denial of Service (PoC)
This exploit creates a payload file 'POC.txt' that triggers a denial of service vulnerability in SpotAuditor 5.3.4. The exploit causes the application to crash when the payload is pasted into the 'Name' field during the registration process.
Mitigation:
No specific mitigation provided