PT-2026-4511 · Nsauditor · Nsauditor

Ismael Nava

·

Publicado

2026-01-23

·

Atualizado

2026-01-24

·

CVE-2021-47895

CVSS v3.1

7.5

Alta

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Nsauditor version 3.2.2.0
Description The software contains a denial of service issue that allows attackers to crash the application. This is achieved by overwriting the Event Description field with a large buffer. Specifically, a 10,000-character 'U' buffer, when pasted into the Event Description field, triggers the application crash. The vulnerable field is the Event Description field.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

DoS

Allocation of Resources Without Limits

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2021-47895

Produtos afetados

Nsauditor