Back to CVE List

CVE-2019-25475

MEDIUM SEVERITY

CVSS Score & Metrics

Base Score
6.2 / 10
Vector String
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Vulnerability Description

SQL Server Password Changer 1.90 contains a buffer overflow vulnerability that allows local attackers to crash the application by supplying an oversized payload. Attackers can inject 6000 bytes of data into the User Name and Registration Code field to trigger a denial of service condition.

Vulnerability Details

Published Date
Last Modified
CWE ID
CWE-787
Source
NVD
Vendor
Top-Password
Product
SQL Server Password Changer Denial of Service Exploit

External References

Discussion (0)

Add Comment

No comments yet. Be the first!