Description
eToolz 3.4.8.0 contains a denial of service vulnerability that allows local attackers to crash the application by supplying oversized input buffers. Attackers can create a payload file containing 255 bytes of data that triggers a buffer overflow condition when processed by the application.
Problem types
Product status
Credits
Ihsan Sencan
References
www.exploit-db.com/exploits/45797 (ExploitDB-45797)
www.vulncheck.com/...z-denial-of-service-via-buffer-overflow (VulnCheck Advisory: eToolz 3.4.8.0 Denial of Service via Buffer Overflow)