CVE-2018-25295

MEDIUM

ObserverIP Scan Tool 1.4.0.1 Denial of Service via IP Field

Title source: cna
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2018-25295. PoCs published by Gionathan Reale.

AI-analyzed exploit summary This Python script generates a 2000-byte buffer overflow payload to trigger a Denial of Service (DoS) in ObserverIP Scan Tool 1.4.0.1 by overwriting memory when pasted into the 'IP' field. The exploit creates a file 'exploit.txt' containing the malicious input, which crashes the application upon submission.

Description

ObserverIP Scan Tool 1.4.0.1 contains a denial of service vulnerability that allows local attackers to crash the application by submitting an excessively long string in the IP input field. Attackers can paste a 2000-byte buffer of repeated characters into the IP field and trigger a search operation to cause an application crash.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Gionathan Reale · pythondoswindows_x86-64
https://www.exploit-db.com/exploits/45204

This Python script generates a 2000-byte buffer overflow payload to trigger a Denial of Service (DoS) in ObserverIP Scan Tool 1.4.0.1 by overwriting memory when pasted into the 'IP' field. The exploit creates a file 'exploit.txt' containing the malicious input, which crashes the application upon submission.

Classification
Working Poc 90%
Attack Type
Dos
Complexity
Trivial
Reliability
Reliable
Target: ObserverIP Scan Tool 1.4.0.1
No auth needed
Prerequisites: ObserverIP Scan Tool 1.4.0.1 installed on Windows 10 · ability to paste input into the 'IP' field
devstral-2 · analyzed Apr 26, 2026 Full analysis →

References (4)

Core 4
Core References
Exploit exploit
ExploitDB-45204
https://www.exploit-db.com/exploits/45204
Product product
Official Product Homepage
https://www.ambientweather.com
Third Party Advisory third-party-advisory
VulnCheck Advisory: ObserverIP Scan Tool 1.4.0.1 Denial of Service via IP Field
https://www.vulncheck.com/advisories/observerip-scan-tool-denial-of-service-via-ip-field

Scores

CVSS v3 6.2
EPSS 0.0012
EPSS Percentile 2.5%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation poc
Automatable no
Technical Impact partial

Details

CWE
CWE-789
Status published
Products (1)
P10/ObserverIP Scan Tool 1.4.0.1
Published Apr 26, 2026
Tracked Since Apr 26, 2026