CVE-2021-27722

HIGH

Nsasoft US LLC SpotAuditor <5.3.5 - Buffer Overflow

Title source: llm

Description

An issue was discovered in Nsasoft US LLC SpotAuditor 5.3.5. The program can be crashed by entering 300 bytes char data into the "Key" or "Name" field while registering.

Exploits (2)

exploitdb WORKING POC VERIFIED
by Sinem Şahin · pythondoswindows
https://www.exploit-db.com/exploits/49590
exploitdb WORKING POC
by Enes Özeser · pythondoswindows
https://www.exploit-db.com/exploits/49638

Scores

CVSS v3 7.5
EPSS 0.0074
EPSS Percentile 72.9%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Details

CWE
CWE-120
Status published
Products (1)
nsasoft/spotauditor 5.3.5
Published Nov 02, 2021
Tracked Since Feb 18, 2026