CyberRota Analysis
AI-GeneratedThe Webbox application from Tobit Laboratories AG is vulnerable to a critical buffer overflow in the endpoint “//serverClient_close.html,” which can be exploited by authenticated attackers through excessively long input values. This vulnerability may lead to a denial of service and, under certain conditions, could allow for remote code execution, potentially compromising the entire server. Organizations using TeamDavid versions up to Rollout 524 should prioritize immediate remediation to mitigate these risks.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
Tobit Laboratories AG TeamDavid's Webbox application’s endpoint “//serverClient_close.html” is vulnerable to a buffer overflow vulnerability in multiple form data parameters. By submitting excessively long values in these parameters, an authenticated attacker can trigger a server crash, resulting in denial of service. Depending on the stack state or if a stack canary can be disclosed through another vulnerability, this buffer overflow could potentially be exploited for remote code execution, leading to full compromise of the server. This issue affects TeamDavid through Rollout 524.