CVE-2021-47827
HIGHWebSSH for iOS 14.16.10 - Denial of Service via MashREPL Input Buffer Overflow
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2021-47827. PoCs published by Luis Martínez.
AI-analyzed exploit summary This exploit is a simple Denial of Service (DoS) PoC for WebSSH for iOS version 14.16.10. It generates a buffer of 300 'A' characters which, when pasted into the 'mashREPL' tool within the app, causes a crash.
Description
WebSSH for iOS 14.16.10 contains a denial of service vulnerability in the mashREPL tool that allows attackers to crash the application by pasting malformed input. Attackers can trigger the vulnerability by copying a 300-character buffer of repeated 'A' characters into the mashREPL input field, causing the application to crash.
Exploits (1)
This exploit is a simple Denial of Service (DoS) PoC for WebSSH for iOS version 14.16.10. It generates a buffer of 300 'A' characters which, when pasted into the 'mashREPL' tool within the app, causes a crash.
References (3)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H