Gelcon/PoC-of-VisiCut2_1-Stack-Overflow-Vul

Gelcon/PoC-of-VisiCut2_1-Stack-Overflow-Vul

Releases0

CVE History

CVEPublishedCVSS v3CVSS v2
3.3 LOW

VisiCut 2.1 allows stack consumption via an XML document with nested set elements, as demonstrated by a java.util.HashMap StackOverflowError when reference='../../../set/set[2]' is used, aka an "insecure deserialization" issue.

Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none.