Exploitation Summary
EIP tracks 1 public exploit for CVE-2021-47972. PoCs published by Geovanni Ruiz.
AI-analyzed exploit summary The exploit demonstrates a Denial of Service (DoS) vulnerability in Sticky Notes & Color Widgets 1.4.2 by generating a large payload (350,000 'A' characters) that crashes the application when pasted into a note. The PoC includes a Python script to create the payload file and steps to reproduce the crash.
Description
Sticky Notes & Color Widgets 1.4.2 contains a denial of service vulnerability that allows attackers to crash the application by creating notes with excessively long character strings. Attackers can paste large payloads of repeated characters into note fields to trigger application crashes and make the application stop responding.
Exploits (1)
The exploit demonstrates a Denial of Service (DoS) vulnerability in Sticky Notes & Color Widgets 1.4.2 by generating a large payload (350,000 'A' characters) that crashes the application when pasted into a note. The PoC includes a Python script to create the payload file and steps to reproduce the crash.
References (2)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H