Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
One Search 1.1.0.0 Denial of Service
Vulnerability Description
One Search 1.1.0.0 contains a denial of service vulnerability that allows local attackers to crash the application by submitting excessively long input strings to the search functionality. Attackers can paste a buffer of 950 or more characters into the search bar to trigger an unhandled exception that crashes the application.
CVSS Information
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Vulnerability Type
CWE-1389
Vulnerability Title
One Search 安全漏洞
Vulnerability Description
One Search是One Search公司的一个快速启动搜索工具。 One Search 1.1.0.0版本存在安全漏洞,该漏洞源于搜索功能未正确处理超长输入字符串,可能导致本地攻击者通过提交超长输入字符串使应用程序崩溃。
CVSS Information
N/A
Vulnerability Type
N/A