CVE-2019-25326

ipPulse 1.92 contains a denial of service vulnerability that allows local attackers to crash the application by providing an oversized input in the Enter Key field. Attackers can generate a 256-byte buffer of repeated 'A' characters to trigger an application crash when pasting the malicious content.
Configurations

Configuration 1 (hide)

cpe:2.3:a:nwpsw:ippulse:*:*:*:*:*:*:*:*

History

17 Jun 2026, 02:32

Type Values Removed Values Added
Summary
  • (es) ipPulse 1.92 contiene una vulnerabilidad de denegación de servicio que permite a atacantes locales bloquear la aplicación al proporcionar una entrada de tamaño excesivo en el campo 'Enter Key'. Los atacantes pueden generar un búfer de 256 bytes de caracteres 'A' repetidos para provocar un bloqueo de la aplicación al pegar el contenido malicioso.

24 Feb 2026, 20:38

Type Values Removed Values Added
First Time Nwpsw ippulse
Nwpsw
CPE cpe:2.3:a:nwpsw:ippulse:*:*:*:*:*:*:*:*
References () https://www.exploit-db.com/exploits/47674 - () https://www.exploit-db.com/exploits/47674 - Exploit, Third Party Advisory
References () https://www.netscantools.com/ippulseinfo.html - () https://www.netscantools.com/ippulseinfo.html - Product
References () https://www.vulncheck.com/advisories/ippulse-enter-key-denial-of-service - () https://www.vulncheck.com/advisories/ippulse-enter-key-denial-of-service - Third Party Advisory
CWE NVD-CWE-noinfo

18 Feb 2026, 22:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-02-18 22:16

Updated : 2026-06-17 02:32


NVD link : CVE-2019-25326

Mitre link : CVE-2019-25326

CVE.ORG link : CVE-2019-25326


JSON object : View

Products Affected

nwpsw

  • ippulse
CWE
CWE-120

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

NVD-CWE-noinfo