Nsauditor Vulnerabilities and Affected Products
Vulnerabilities associated with SpotAuditor.
Products
Clear product- Nsauditor4 vulnerabilities
- Backup Key Recovery2 vulnerabilities
- SpotAuditor2 vulnerabilities
- BlueAuditor1 vulnerability
- DNSS Domain Name Search Software1 vulnerability
- FTP Password Recover1 vulnerability
- NBMonitor1 vulnerability
- NetShareWatcher1 vulnerability
- Nsauditor Local SEH Buffer Overflow1 vulnerability
- Nsauditor RemShutdown1 vulnerability
- Product Key Explorer1 vulnerability
- SpotFTP Password Recover1 vulnerability
- SpotIE Internet Explorer Password Recovery1 vulnerability
- SpotPaltalk1 vulnerability
| Vulnerability | Title and context | CVSS | EPSS | PoCs | Signals | STIX action |
|---|---|---|---|---|---|---|
CVE-2019-25666MEDIUM | SpotAuditor 3.6.7 Denial of Service Buffer OverflowSpotAuditor 3.6.7 contains a local buffer overflow vulnerability in the Base64 Password Decoder component that allows attackers to crash the application. Attackers can supply an oversized Base64 string through the decoder interface to trigger a denial of service condition. CWE-787Apr 5, 2026 | CVSS6.9v4.0 | EPSS0.237% | PoCs1 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2019-25596MEDIUM | SpotAuditor 5.2.6 Name Field Denial of ServiceSpotAuditor 5.2.6 contains a denial of service vulnerability in the registration dialog that allows local attackers to crash the application by supplying an excessively long string in the Name field. Attackers can paste a buffer of 300 repeated characters into the Name input during registration to trigger an application crash. CWE-1287Mar 22, 2026 | CVSS6.9v4.0 | EPSS0.192% | PoCs1 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |