Description
GHIA CamIP 1.2 for iOS contains a denial of service vulnerability in the password input field that allows attackers to crash the application. Attackers can paste a 33-character buffer of repeated characters into the password field to trigger an application crash on iOS devices.
Problem types
Product status
Credits
Ivan Marmolejo
References
www.exploit-db.com/exploits/47721 (ExploitDB-47721)
apps.apple.com/mx/app/ghia-camip/id1342090963 (Official App Store Page for GHIA CamIP)
www.vulncheck.com/...amip-for-ios-password-denial-of-service (VulnCheck Advisory: GHIA CamIP 1.2 for iOS - 'Password' Denial of Service)