CVE-2021-47797
HIGHLeawo Prof. Media 11.0.0.1 - Denial of Service via Oversized Activation Keycode
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2021-47797. PoCs published by stresser.
AI-analyzed exploit summary This exploit generates a large buffer of 'A' characters to trigger a denial-of-service (DoS) in Leawo Prof. Media 11.0.0.1 by overflowing the 'Keycode' field during registration. The crash occurs due to improper input validation.
Description
Leawo Prof. Media 11.0.0.1 contains a denial of service vulnerability that allows attackers to crash the application by supplying an oversized payload in the activation keycode field. Attackers can generate a 6000-byte buffer of repeated characters to trigger an application crash when pasted into the registration interface.
Exploits (1)
This exploit generates a large buffer of 'A' characters to trigger a denial-of-service (DoS) in Leawo Prof. Media 11.0.0.1 by overflowing the 'Keycode' field during registration. The crash occurs due to improper input validation.
References (3)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H