Description
Folder Lock 7.7.9 contains a buffer overflow vulnerability in the serial number registration field that allows local attackers to crash the application by submitting an oversized payload. Attackers can paste a 6000-byte buffer of arbitrary data into the 'Serial Number and Registration Key' field to trigger a denial of service condition.
Problem types
Product status
Credits
Achilles
References
www.exploit-db.com/exploits/47383 (ExploitDB-47383)
www.vulncheck.com/...nial-of-service-via-serial-number-field (VulnCheck Advisory: Folder Lock 7.7.9 Denial of Service via Serial Number Field)