CVE-2019-25340
EUVD-2019-1941212.02.2026, 23:16
SpotAuditor 5.3.2 contains a denial of service vulnerability in its Base64 decryption feature that allows attackers to crash the application by supplying an oversized buffer. Attackers can generate a malformed input file with 2000 repeated characters to trigger an application crash when pasted into the Base64 Encrypted Password field.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| nsasoft | spotauditor | 5.3.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration