CVE-2019-25434
EUVD-2019-1961220.02.2026, 23:16
SpotAuditor 5.3.1.0 contains a denial of service vulnerability that allows unauthenticated attackers to crash the application by submitting excessive data in the registration name field. Attackers can enter a large string of characters (5000 bytes or more) in the name field during registration to trigger an unhandled exception that crashes the application.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| nsasoft | spotauditor | 𝑥 ≤ 5.3.1.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration