NetAware 1.20 contains a buffer overflow vulnerability in the Share Name field that allows local attackers to crash the application by supplying an excessively long string. Attackers can trigger a denial of service by pasting a 1000-byte buffer into the Share Name parameter when adding a new share through the Manage Shares interface.
Metrics
Affected Vendors & Products
References
History
Mon, 23 Mar 2026 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 23 Mar 2026 17:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Spytech-web
Spytech-web netaware |
|
| CPEs | cpe:2.3:a:spytech-web:netaware:1.20:*:*:*:*:*:*:* | |
| Vendors & Products |
Spytech-web
Spytech-web netaware |
Mon, 23 Mar 2026 10:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Infiltration-systems
Infiltration-systems netaware |
|
| Vendors & Products |
Infiltration-systems
Infiltration-systems netaware |
Sat, 21 Mar 2026 13:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | NetAware 1.20 contains a buffer overflow vulnerability in the Share Name field that allows local attackers to crash the application by supplying an excessively long string. Attackers can trigger a denial of service by pasting a 1000-byte buffer into the Share Name parameter when adding a new share through the Manage Shares interface. | |
| Title | NetAware 1.20 Share Name Denial of Service | |
| Weaknesses | CWE-787 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published: 2026-03-21T12:46:50.105Z
Updated: 2026-03-23T16:55:46.692Z
Reserved: 2026-03-21T12:23:53.385Z
Link: CVE-2019-25546
Updated: 2026-03-23T16:47:56.659Z
Status : Analyzed
Published: 2026-03-21T13:16:16.383
Modified: 2026-03-23T17:32:26.497
Link: CVE-2019-25546
No data.