Nsauditor Vulnerabilities and Affected Products
Vulnerabilities associated with Nsauditor.
Products
Clear product- Nsauditor4 vulnerabilities
- Backup Key Recovery2 vulnerabilities
- SpotAuditor2 vulnerabilities
- BlueAuditor1 vulnerability
- DNSS Domain Name Search Software1 vulnerability
- FTP Password Recover1 vulnerability
- NBMonitor1 vulnerability
- NetShareWatcher1 vulnerability
- Nsauditor Local SEH Buffer Overflow1 vulnerability
- Nsauditor RemShutdown1 vulnerability
- Product Key Explorer1 vulnerability
- SpotFTP Password Recover1 vulnerability
- SpotIE Internet Explorer Password Recovery1 vulnerability
- SpotPaltalk1 vulnerability
| Vulnerability | Title and context | CVSS | EPSS | PoCs | Signals | STIX action |
|---|---|---|---|---|---|---|
CVE-2019-25597MEDIUM | NSauditor 3.1.2.0 Denial of Service via Community FieldNSauditor 3.1.2.0 contains a buffer overflow vulnerability in the SNMP Auditor Community field that allows local attackers to crash the application by supplying an excessively long string. Attackers can paste a large payload into the Community field and trigger the Walk function to cause a denial of service condition. CWE-787Mar 22, 2026 | CVSS6.9v4.0 | EPSS0.238% | PoCs1 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2020-37130MEDIUM | Nsauditor 3.2.0.0 - 'Name' Denial of ServiceNsauditor 3.2.0.0 contains a denial of service vulnerability in the registration name input field that allows attackers to crash the application. Attackers can create a malicious payload of 1000 bytes of repeated characters to trigger an application crash when pasted into the registration name field. CWE-120Feb 5, 2026 | CVSS6.7v4.0 | EPSS0.455% | PoCs1 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2021-47895MEDIUM | Nsauditor 3.2.2.0 - 'Event Description' Denial of ServiceNsauditor 3.2.2.0 contains a denial of service vulnerability that allows attackers to crash the application by overwriting the Event Description field with a large buffer. Attackers can generate a 10,000-character 'U' buffer and paste it into the Event Description field to trigger an application crash. CWE-770Jan 23, 2026 | CVSS6.7v4.0 | EPSS0.308% | PoCs1 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2021-47815MEDIUM | Nsauditor 3.2.3 - Denial of Service (PoC)Nsauditor 3.2.3 contains a denial of service vulnerability in the registration code input field that allows attackers to crash the application. Attackers can paste a large buffer of 256 repeated characters into the 'Key' field to trigger an application crash. CWE-120Jan 15, 2026 | CVSS6.7v4.0 | EPSS0.43% | PoCs1 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |