ObserverIP Scan Tool Denial-of-Service Vulnerability
Vulnerability
A denial-of-service vulnerability has been identified in ObserverIP Scan Tool version 1.4.0.1. This vulnerability allows local attackers to crash the application by entering an excessively long string in the IP input field. By pasting a 2000-byte buffer of repeated characters into the IP field and initiating a search, the application is triggered to crash.
Impact
Exploiting this vulnerability leads to a crash of the ObserverIP Scan Tool application, causing a denial-of-service condition where the application becomes unresponsive or unavailable.
Reproduction
To reproduce this vulnerability, first create a text file named 'exploit.txt' containing a 2000-byte string of repeated characters. Then, open the ObserverIP Scan Tool application. In the IP input field, paste the contents of 'exploit.txt' and click 'Search'. This action will cause the application to crash.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
