Exploitation Summary
EIP tracks 1 public exploit for CVE-2019-25658. PoCs published by Rafael Pedrero.
AI-analyzed exploit summary This Python script generates a buffer overflow payload (212 'A' characters) to trigger a local DoS in a-Mac Address Change v5.4 by pasting the payload into registration fields. The crash occurs due to insufficient input validation in the registration form.
Description
a-Mac Address Change 5.4 contains a local buffer overflow vulnerability that allows local attackers to crash the application by supplying oversized input to registration form fields. Attackers can paste 212 bytes of data into the 'Your Name', 'Your Company', or 'Register Code' fields and click the Register button to trigger a denial of service crash.
Exploits (1)
This Python script generates a buffer overflow payload (212 'A' characters) to trigger a local DoS in a-Mac Address Change v5.4 by pasting the payload into registration fields. The crash occurs due to insufficient input validation in the registration form.
References (3)
Scores
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H