CVE-2024-1184

LOW

Nsasoft Network Sleuth 3.0.0.0 - Denial of Service in Registration Handler

Title source: llm
STIX 2.1

Description

A vulnerability was found in Nsasoft Network Sleuth 3.0.0.0. It has been rated as problematic. Affected by this issue is some unknown functionality of the component Registration Handler. The manipulation leads to denial of service. It is possible to launch the attack on the local host. The exploit has been disclosed to the public and may be used. VDB-252674 is the identifier assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

References (3)

Core 3
Core References
Third Party Advisory vdb-entry
https://vuldb.com/?id.252674
Third Party Advisory signature permissions-required
https://vuldb.com/?ctiid.252674
Exploit, Third Party Advisory exploit
https://fitoxs.com/vuldb/10-exploit-perl.txt

Scores

CVSS v3 3.3
EPSS 0.0039
EPSS Percentile 30.5%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L

CISA SSVC

Vulnrichment
Exploitation poc
Automatable no
Technical Impact partial

Details

CWE
CWE-404
Status published
Products (1)
nsasoft/network_sleuth 3.0.0.0
Published Feb 02, 2024
Tracked Since Feb 18, 2026