vendor:
VSAXESS
by:
Diego Santamaria
7.5
CVSS
HIGH
Denial of Service (DoS) Local
CWE
Product Name: VSAXESS
Affected Version From: V2.6.2.70 build20171226_053
Affected Version To: V2.6.2.70 build20171226_053
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested: Windows 7 Professional
2018
VSAXESS V2.6.2.70 build20171226_053 – ‘Nickname’ Denial of Service (PoC)
The exploit allows an attacker to cause a denial of service by providing a specially crafted 'Nickname' value, crashing the VSAXESS application.
Mitigation:
The vendor has not released a patch or mitigation for this vulnerability.