Description


LanSpy 2.0.1.159 contains a local buffer overflow vulnerability that allows attackers to overwrite the instruction pointer by supplying oversized input to the scan field. Attackers can craft a payload with 688 bytes of padding followed by 4 bytes of controlled data to crash the application or potentially achieve code execution.

Related CPE's


Weaknesses



CWE-787

CVSS impact metrics


CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

8.4 · High

Information


Source identifier

[email protected]

Vulnerability status

Analyzed

Published

2026-04-22T16:16:47.397Z

5 months ago

Last modified

2026-06-17T01:55:07.480Z

3 months ago