CVE-2019-25655
MEDIUMDevice Monitoring Studio 8.10.00.8925 Denial of Service
Title source: cnaExploitation Summary
EIP tracks 1 public exploit for CVE-2019-25655. PoCs published by Victor Mondragón.
AI-analyzed exploit summary This PoC exploits a denial-of-service vulnerability in Device Monitoring Studio 8.10.00.8925 by sending a crafted input (1000 'A' characters) to the server connection field, causing the application to crash. The exploit is straightforward and relies on a buffer overflow or similar memory corruption issue.
Description
Device Monitoring Studio 8.10.00.8925 contains a denial of service vulnerability that allows local attackers to crash the application by supplying an excessively long string to the server connection dialog. Attackers can trigger the crash by entering a malformed server name or address containing repeated characters through the Tools menu Connect to New Server interface.
Exploits (1)
This PoC exploits a denial-of-service vulnerability in Device Monitoring Studio 8.10.00.8925 by sending a crafted input (1000 'A' characters) to the server connection field, causing the application to crash. The exploit is straightforward and relies on a buffer overflow or similar memory corruption issue.
References (2)
Scores
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H