CVE-2018-25233EPSS p9.8%
CVE-2018-25233CVE-2018-25233
southrivertech / webdrive
Description
WebDrive 18.00.5057 contains a denial of service vulnerability that allows local attackers to crash the application by supplying an excessively long string in the username field during Secure WebDAV connection setup. Attackers can input a buffer-overflow payload of 5000 bytes in the username parameter and trigger a connection test to cause the application to crash.
Scoring
| CVSS | 6.2 () |
| Vector | CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H |
| EPSS | 0.21% probability of exploitation · percentile 9.8% · 2026-10-10T12:00:23Z |
| Last modified | 2026-10-07 |