Description
SpotAuditor 3.6.7 contains a local buffer overflow vulnerability in the Base64 Password Decoder component that allows attackers to crash the application. Attackers can supply an oversized Base64 string through the decoder interface to trigger a denial of service condition.
Problem types
Product status
Credits
Rafael Pedrero
References
www.exploit-db.com/exploits/46313 (ExploitDB-46313)
www.nsauditor.com/order.html (Official Product Homepage)
www.vulncheck.com/...ditor-denial-of-service-buffer-overflow (VulnCheck Advisory: SpotAuditor 3.6.7 Denial of Service Buffer Overflow)