Description
NetSetMan 4.7.1 contains a buffer overflow vulnerability in the Workgroup feature that allows local attackers to crash the application by supplying oversized input. Attackers can create a malicious configuration file with excessive data and paste it into the Workgroup field to trigger a denial of service condition.
Problem types
Product status
Credits
Victor Mondragón
References
www.exploit-db.com/exploits/46417 (ExploitDB-46417)
www.netsetman.com/ (Official Product Homepage)
www.netsetman.com/netsetman.exe (Product Reference)
www.vulncheck.com/...group-buffer-overflow-denial-of-service (VulnCheck Advisory: NetSetMan 4.7.1 Workgroup Buffer Overflow Denial of Service)