CVE-2024-1186

A vulnerability classified as problematic was found in Munsoft Easy Archive Recovery 2.0. This vulnerability affects unknown code of the component Registration Key Handler. The manipulation leads to denial of service. An attack has to be approached locally. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-252676. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
References
Link Resource
https://fitoxs.com/vuldb/12-exploit-perl.txt Exploit
https://vuldb.com/?ctiid.252676 Permissions Required
https://vuldb.com/?id.252676 Permissions Required
https://www.exploit-db.com/exploits/45884 Third Party Advisory VDB Entry
Configurations

Configuration 1 (hide)

cpe:2.3:a:munsoft:easy_archive_recovery:2.0:*:*:*:*:*:*:*

History

10 Feb 2024, 01:12

Type Values Removed Values Added
References () https://fitoxs.com/vuldb/12-exploit-perl.txt - () https://fitoxs.com/vuldb/12-exploit-perl.txt - Exploit
References () https://vuldb.com/?ctiid.252676 - () https://vuldb.com/?ctiid.252676 - Permissions Required
References () https://vuldb.com/?id.252676 - () https://vuldb.com/?id.252676 - Permissions Required
References () https://www.exploit-db.com/exploits/45884 - () https://www.exploit-db.com/exploits/45884 - Third Party Advisory, VDB Entry
Summary
  • (es) Una vulnerabilidad fue encontrada en Munsoft Easy Archive Recovery 2.0 y clasificada como problemática. Esta vulnerabilidad afecta a un código desconocido del componente Registration Key Handler. La manipulación conduce a la denegación del servicio. Un ataque debe abordarse localmente. El exploit ha sido divulgado al público y puede utilizarse. El identificador de esta vulnerabilidad es VDB-252676. NOTA: Se contactó primeramente con el proveedor sobre esta divulgación, pero no respondió de ninguna manera.
CVSS v2 : 1.7
v3 : 3.3
v2 : 1.7
v3 : 5.5
First Time Munsoft easy Archive Recovery
Munsoft
CPE cpe:2.3:a:munsoft:easy_archive_recovery:2.0:*:*:*:*:*:*:*

02 Feb 2024, 17:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-02-02 17:15

Updated : 2024-04-11 01:24


NVD link : CVE-2024-1186

Mitre link : CVE-2024-1186

CVE.ORG link : CVE-2024-1186


JSON object : View

Products Affected

munsoft

  • easy_archive_recovery
CWE
CWE-404

Improper Resource Shutdown or Release