vendor:
Sticky Notes & Color Widgets
by:
Geovanni Ruiz
CVSS
HIGH
Denial of Service
N/A
CWE
Product Name: Sticky Notes & Color Widgets
Affected Version From: 1.4.2
Affected Version To: 1.4.2
Patch Exists: N/A
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: iOS
2021
Sticky Notes & Color Widgets 1.4.2 – Denial of Service (PoC)
Color Notes is vulnerable to a DoS condition when a long list of characters is being used when creating a note. Successful exploitation will cause the application to stop working. The exploit has been tested against iOS 14.2.
Mitigation:
N/A