SpotDialup Denial-of-Service Vulnerability
Vulnerability
A denial-of-service vulnerability has been identified in SpotDialup version 1.6.7. The issue arises in the registration name input field, where attackers can paste a 1000-character buffer payload to crash the application. This vulnerability is classified as 'Classic Buffer Overflow' by the CWE.
Impact
Exploitation of this vulnerability leads to a crash of the SpotDialup application.
Reproduction
To reproduce this vulnerability, download and install SpotDialup 1.6.7. After installation, run a Python script that creates a file containing a 1000-character payload. Then, open the application and navigate to the registration code entry. Copy the payload from the file and paste it into the 'Name' field. Click 'Ok' to trigger the application crash.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
