iCash Buffer Overflow Vulnerability Leading to Denial-of-Service
Vulnerability
A buffer overflow vulnerability has been identified in iCash version 7.6.5. This vulnerability allows local attackers to crash the application by sending an oversized payload through the 'Connect to Server' dialog. By pasting a 7000-byte string into the 'Host' field and clicking 'Connect', the application crashes.
Impact
Exploitation of this vulnerability leads to a denial-of-service condition, causing the application to crash.
Reproduction
To reproduce this vulnerability, first create a text file named 'exploit.txt' and write a 7000-byte string into it. Then, open iCash version 7.6.5 on a Windows 7 32-bit system. Once the application is running, navigate to 'File' and select 'Connect to Server...'. In the 'Host' field, paste the contents of 'exploit.txt'. Click the 'Connect' button, which will trigger the application to crash.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
