PT-2017-12166 · Acunetix · Acunetix

Code16

·

Published

2017-07-27

·

Updated

2017-08-09

·

CVE-2017-11674

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Acunetix version 8
Description The issue allows remote attackers to cause a denial of service, resulting in an application crash, by providing a malformed PRE file. This is related to a "Read Access Violation starting at reporter!madTraceProcess."
Recommendations For Acunetix version 8, consider avoiding the use of malformed PRE files to prevent the application crash until a patch is available. As a temporary workaround, restrict access to the Reporter.exe component to minimize the risk of exploitation.

Exploit

Fix

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2017-11674

Affected Products

Acunetix