Description
Sandboxie 5.49.7 contains a denial of service vulnerability that allows attackers to crash the application by overflowing the container folder input field. Attackers can paste a large buffer of repeated characters into the Sandbox container folder setting to trigger an application crash.
Problem types
Improper Validation of Specified Quantity in Input
Product status
Credits
Erick Galindo
References
www.exploit-db.com/exploits/49844
www.exploit-db.com/exploits/49844 (ExploitDB-49844)
sandboxie-plus.com/ (Sandboxie Official Homepage)
www.vulncheck.com/advisories/sandboxie-denial-of-service (VulnCheck Advisory: Sandboxie 5.49.7 - Denial of Service)