CVE-2019-25475
MEDIUM SEVERITYCVSS Score & Metrics
Base Score
6.2 / 10
Vector String
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Vulnerability Description
SQL Server Password Changer 1.90 contains a buffer overflow vulnerability that allows local attackers to crash the application by supplying an oversized payload. Attackers can inject 6000 bytes of data into the User Name and Registration Code field to trigger a denial of service condition.
Vulnerability Details
Published Date
Last Modified
CWE ID
CWE-787
Source
NVD
Vendor
Top-Password
Product
SQL Server Password Changer Denial of Service Exploit
Discussion (0)
Add Comment
No comments yet. Be the first!