GetGo Download Manager
cpe:2.3:a:getgosoft:getgo_download_manager:*:*:*:*:*:*:*
- <= 6.2.2.3300
A buffer overflow vulnerability has been identified in GetGo Download Manager version 6.2.2.3300. This vulnerability allows remote attackers to cause a denial-of-service condition by sending HTTP responses with excessively long headers. The application can be crashed and made unavailable by crafting malicious HTTP responses with oversized header values.
Exploitation of this vulnerability leads to a denial-of-service condition, causing the application to crash and become unavailable.
The vulnerability can be reproduced by sending an HTTP response with an excessively long header value to a server that is running GetGo Download Manager 6.2.2.3300. This can be done using a simple socket-based script that establishes a connection to the server, sends the oversized header, and then closes the connection.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.