vendor:
TaskCanvas
by:
Ismail Tasdelen
7.5
CVSS
HIGH
Denial Of Service
400
CWE
Product Name: TaskCanvas
Affected Version From: 1.4.0
Affected Version To: 1.4.0
Patch Exists: NO
Related CWE: N/A
CPE: a:digital_volcano:taskcanvas
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: Windows 10
2020
TaskCanvas 1.4.0 – ‘Registration’ Denial Of Service
TaskCanvas 1.4.0 is vulnerable to Denial of Service attack when a malicious user sends a large amount of characters in the 'Registration' field. This causes the application to crash.
Mitigation:
The user should not enter any malicious characters in the 'Registration' field.