CVE-2019-25620
MEDIUM
6,9
Source: [email protected]
Attack Vector: local
Attack Complexity: low
Privileges Required: none
User Interaction: none
Confidentiality: N/A
Integrity: N/A
Availability: N/A
MEDIUM
6,2
Source: [email protected]
Attack Vector: local
Attack Complexity: low
Privileges Required: none
User Interaction: none
Scope: unchanged
Confidentiality: none
Integrity: none
Availability: high
Description
AI Translation Available
Tree Studio 2.17 contains a denial of service vulnerability that allows local attackers to crash the application by providing malformed input through the keyboard interface. Attackers can trigger the vulnerability by entering arbitrary characters during application runtime, causing the application to become unresponsive or terminate abnormally.
168
Improper Handling of Inconsistent Special Elements
DraftCommon Consequences
Security Scopes Affected:
Availability
Access Control
Non-Repudiation
Potential Impacts:
Dos: Crash, Exit, Or Restart
Bypass Protection Mechanism
Hide Activities
Applicable Platforms
All platforms may be affected
https://www.exploit-db.com/exploits/46125
https://www.vulncheck.com/advisories/tree-studio-denial-of-service-via-malforme…
http://www.pixarra.com/
http://www.pixarra.com/uploads/9/4/6/3/94635436/tbtreestudio_install.exe