Vulnerability Details CVE-2019-25326
ipPulse 1.92 contains a denial of service vulnerability that allows local attackers to crash the application by providing an oversized input in the Enter Key field. Attackers can generate a 256-byte buffer of repeated 'A' characters to trigger an application crash when pasting the malicious content.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 4.4%
CVSS Severity
CVSS v3 Score 6.2
Products affected by CVE-2019-25326
-
cpe:2.3:a:nwpsw:ippulse:1.50
-
cpe:2.3:a:nwpsw:ippulse:1.51
-
cpe:2.3:a:nwpsw:ippulse:1.52
-
cpe:2.3:a:nwpsw:ippulse:1.53
-
cpe:2.3:a:nwpsw:ippulse:1.60
-
cpe:2.3:a:nwpsw:ippulse:1.65
-
cpe:2.3:a:nwpsw:ippulse:1.70
-
cpe:2.3:a:nwpsw:ippulse:1.80
-
cpe:2.3:a:nwpsw:ippulse:1.81
-
cpe:2.3:a:nwpsw:ippulse:1.82
-
cpe:2.3:a:nwpsw:ippulse:1.83
-
cpe:2.3:a:nwpsw:ippulse:1.84
-
cpe:2.3:a:nwpsw:ippulse:1.85
-
cpe:2.3:a:nwpsw:ippulse:1.90
-
cpe:2.3:a:nwpsw:ippulse:1.91
-
cpe:2.3:a:nwpsw:ippulse:1.92