CVE-2023-54337

CRITICAL

Sysax Multi Server - Denial of Service

Title source: rule

Description

Sysax Multi Server 6.95 contains a denial of service vulnerability in the administrative password field that allows attackers to crash the application. Attackers can overwrite the password field with 800 bytes of repeated characters to trigger an application crash and disrupt server functionality.

Exploits (1)

exploitdb WORKING POC
by Luis Martínez · textdoswindows
https://www.exploit-db.com/exploits/51066

Scores

CVSS v3 9.1
EPSS 0.0002
EPSS Percentile 4.4%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H

Details

CWE
CWE-1284
Status published
Products (1)
sysax/multi_server 6.95
Published Jan 13, 2026
Tracked Since Feb 18, 2026