Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
swnet.dll in YaSoft Switch Off 2.3 and earlier allows remote attackers to cause a denial of service (infinite loop) via a long packet with two CRLF sequences to the service management port (TCP 8000).
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
YaSoft Switch Off超大包远程拒绝服务攻击漏洞
Vulnerability Description
Switch Off是一款简单易用的托盘式系统工具,可自动执行经常使用的操作,如关闭或重启动计算机,关闭拨号连接等。 Switch Off对超大包请求缺少正确处理,远程攻击者可以利用这个漏洞对服务程序进行拒绝服务攻击。 发送超过20240字节(追加两个CrLfs)数据到Switch Off监听的8000/TCP管理端口,可使Switch Off引用程序进入无限循环。问题代码存在于'swnet.dll'中,此漏洞可消耗大量CPU和使程序崩溃。
CVSS Information
N/A
Vulnerability Type
N/A