Description
LanSpy 2.0.1.159 contains a local buffer overflow vulnerability that allows attackers to overwrite the instruction pointer by supplying oversized input to the scan field. Attackers can craft a payload with 688 bytes of padding followed by 4 bytes of controlled data to crash the application or potentially achieve code execution.
CVSS 8.4EPSS 0.201%Risque 0.86
Voir la source- Publication
- 2026-04-22 16:16:47
- Versions concernées
- <2.0.1.159
- Type
- Installed app
- Vecteur
- CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H