SpotFTP Password Recover 2.4.2 contains a denial of service vulnerability that allows local attackers to crash the application by supplying an oversized buffer in the Name field during registration. Attackers can generate a 256-byte payload, paste it into the Name input field, and trigger a crash when submitting the registration code.
Metrics
Affected Vendors & Products
References
History
Sun, 12 Apr 2026 12:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | SpotFTP Password Recover 2.4.2 contains a denial of service vulnerability that allows local attackers to crash the application by supplying an oversized buffer in the Name field during registration. Attackers can generate a 256-byte payload, paste it into the Name input field, and trigger a crash when submitting the registration code. | |
| Title | SpotFTP Password Recover 2.4.2 Denial of Service via Name Field | |
| Weaknesses | CWE-807 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-04-12T12:28:55.601Z
Reserved: 2026-04-12T12:19:23.786Z
Link: CVE-2019-25711
No data.
Status : Received
Published: 2026-04-12T13:16:34.300
Modified: 2026-04-12T13:16:34.300
Link: CVE-2019-25711
No data.