Excel Password Recovery Professional Buffer Overflow Vulnerability Leading to Denial-of-Service
Vulnerability
A local buffer overflow vulnerability has been identified in Excel Password Recovery Professional version 8.2.0.0. This vulnerability allows attackers to cause a denial-of-service condition by entering an excessively long string, approximately 5000 bytes, into the 'E-Mail and Registrations Code' field. When the Register button is clicked, the application crashes, demonstrating the impact of the buffer overflow.
Impact
Exploitation of this vulnerability leads to a crash of the Excel Password Recovery Professional application, causing a denial-of-service condition.
Reproduction
The vulnerability can be reproduced by pasting a payload of 5000 bytes into the 'E-Mail and Registrations Code' field of the Excel Password Recovery Professional application version 8.2.0.0. After pasting the payload, clicking the 'Register' button will trigger a crash, demonstrating the buffer overflow vulnerability.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
