PT-2026-4511 · Nsauditor · Nsauditor

Ismael Nava

·

Published

2026-01-23

·

Updated

2026-01-24

·

CVE-2021-47895

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Nsauditor version 3.2.2.0
Description The software contains a denial of service issue that allows attackers to crash the application. This is achieved by overwriting the Event Description field with a large buffer. Specifically, a 10,000-character 'U' buffer, when pasted into the Event Description field, triggers the application crash. The vulnerable field is the Event Description field.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

DoS

Allocation of Resources Without Limits

Weakness Enumeration

Related Identifiers

CVE-2021-47895

Affected Products

Nsauditor