CVE-2018-25369
MEDIUMVisual Ping 0.8.0.0 Buffer Overflow Denial of Service
Title source: cnaExploitation Summary
EIP tracks 1 public exploit for CVE-2018-25369. PoCs published by Uriel Corral Salinas.
AI-analyzed exploit summary This PoC exploits a buffer overflow vulnerability in Visual Ping 0.8.0.0 by writing a large buffer of 'A's (4108 bytes) followed by smaller buffers of 'B's, 'C's, and 'D's to a file, which when pasted into the application's input fields causes a crash (DoS).
Description
Visual Ping 0.8.0.0 contains a buffer overflow vulnerability in input field handling that allows local attackers to crash the application by supplying oversized data. Attackers can inject malicious payloads exceeding 4108 bytes into the Host, Time Out, Packet Size, Pause, or Loops fields to trigger a denial of service condition.
Exploits (1)
This PoC exploits a buffer overflow vulnerability in Visual Ping 0.8.0.0 by writing a large buffer of 'A's (4108 bytes) followed by smaller buffers of 'B's, 'C's, and 'D's to a file, which when pasted into the application's input fields causes a crash (DoS).
References (4)
Scores
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H