vendor:
Sysax Multi Server
by:
Luis Martinez
7.5
CVSS
HIGH
Denial of Service (DoS) Local
400
CWE
Product Name: Sysax Multi Server
Affected Version From: 6.95
Affected Version To: 6.95
Patch Exists: NO
Related CWE:
CPE: sysax:multi_server:6.95
Platforms Tested: Windows 10 Pro x64 es
2022
Sysax Multi Server 6.95 – ‘Password’ Denial of Service (PoC)
The vulnerability allows an attacker to cause a denial of service (DoS) condition on the Sysax Multi Server version 6.95. By providing a long string as the password, the application crashes. This can lead to a disruption in the availability of the server.
Mitigation:
Apply the latest patch or upgrade to a version that is not affected by this vulnerability. Restrict access to the server to trusted users only.