NetSetMan
cpe:2.3:a:netsetman:netsetman:*:*:*:*:*:*:*
- <= 4.7.1
A buffer overflow vulnerability has been identified in NetSetMan version 4.7.1, specifically within the Workgroup feature. This vulnerability allows local attackers to cause the application to crash by providing oversized input. Exploitation involves creating a malicious configuration file with excessive data, which is then pasted into the Workgroup field, triggering a denial-of-service condition.
Exploitation of this vulnerability leads to a denial-of-service condition, causing the application to crash.
The vulnerability can be reproduced by running a Python script that generates a buffer overflow payload. This payload is saved into a text file, which is then copied to the clipboard. After opening NetSetMan and pasting the clipboard content into the Workgroup field, clicking 'Activate' will cause the application to crash.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.