vendor:
VSCO
by:
0xB9
5.5
CVSS
MEDIUM
Denial of Service
400
CWE
Product Name: VSCO
Affected Version From: 1.1.1.0
Affected Version To: 1.1.1.0
Patch Exists: NO
Related CWE:
CPE: a:vsco:vsco:1.1.1.0
Platforms Tested: Windows 10
2018
VSCO 1.1.1.0 – Denial of Service (PoC)
This exploit allows an attacker to cause a denial of service (DoS) by crashing the VSCO application. By creating a file with a large payload and pasting the contents into the search bar of the application, the app will crash.
Mitigation:
The vendor should release a patch or update that fixes the issue. Users should update their software to the latest version to mitigate this vulnerability.