CVE-2023-53879
MEDIUMNVClient 5.0 - Stack-based Buffer Overflow via User Configuration Contact Field
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2023-53879. PoCs published by Ahmet Ümit BAYRAM.
AI-analyzed exploit summary This exploit demonstrates a stack buffer overflow in NVClient v5.0 by writing 846 'A' characters to a file, which when pasted into the 'Contact' field during user creation, triggers a crash (DoS). The PoC is functional and follows a clear reproduction path.
Description
NVClient 5.0 contains a stack buffer overflow vulnerability in the user configuration contact field that allows attackers to crash the application. Attackers can overwrite 846 bytes of memory by pasting a crafted payload into the contact box, causing a denial of service condition.
Exploits (1)
This exploit demonstrates a stack buffer overflow in NVClient v5.0 by writing 846 'A' characters to a file, which when pasted into the 'Contact' field during user creation, triggers a crash (DoS). The PoC is functional and follows a clear reproduction path.
References (3)
Scores
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H