AbsoluteTelnet 11.24 contains a denial of service vulnerability that allows local attackers to crash the application by manipulating username and error report fields. Attackers can trigger the crash by inserting 1000 characters into the username or email address fields, causing the application to become unresponsive.
References
| Link | Resource |
|---|---|
| https://www.celestialsoftware.net/ | Product |
| https://www.exploit-db.com/exploits/50510 | Exploit Third Party Advisory |
Configurations
History
26 Jan 2026, 16:15
| Type | Values Removed | Values Added |
|---|---|---|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.5 |
21 Jan 2026, 22:28
| Type | Values Removed | Values Added |
|---|---|---|
| First Time |
Celestialsoftware
Celestialsoftware absolutetelnet |
|
| CPE | cpe:2.3:a:celestialsoftware:absolutetelnet:11.24:*:*:*:*:*:*:* | |
| References | () https://www.celestialsoftware.net/ - Product | |
| References | () https://www.exploit-db.com/exploits/50510 - Exploit, Third Party Advisory |
15 Jan 2026, 16:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-01-15 16:16
Updated : 2026-01-26 16:15
NVD link : CVE-2021-47765
Mitre link : CVE-2021-47765
CVE.ORG link : CVE-2021-47765
JSON object : View
Products Affected
celestialsoftware
- absolutetelnet
CWE
CWE-787
Out-of-bounds Write
