vendor:
TapinRadio
by:
Ismael Nava
7.5
CVSS
HIGH
Denial of Service
N/A
CWE
Product Name: TapinRadio
Affected Version From: 2.13.7
Affected Version To: 2.13.7
Patch Exists: YES
Related CWE: N/A
CPE: a:raimersoft:tapinradio:2.13.7
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: Windows 10 Home x64
2020
TapinRadio 2.13.7 – Denial of Service (PoC)
TapinRadio 2.13.7 is vulnerable to Denial of Service attack. An attacker can create a new .txt file with a buffer of 20000 'K' characters and paste the content in the field Username and Address in the Preferences option of the program. After clicking in OK, the program will crash and the user will need to uninstall and install again the program.
Mitigation:
Update to the latest version of TapinRadio