Medium severity6.2NVD Advisory· Published Mar 30, 2026· Updated Apr 8, 2026
CVE-2018-25227
CVE-2018-25227
Description
Valentina Studio 9.0.4 contains a denial of service vulnerability that allows local attackers to crash the application by supplying an excessively long string in the Host field. Attackers can trigger the crash by pasting a 256-byte buffer of repeated characters into the Host parameter during server connection attempts.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2cpe:2.3:a:valentina-db:studio:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:valentina-db:studio:*:*:*:*:*:*:*:*range: <=9.0.4
- (no CPE)range: = 9.0.4
Patches
Vulnerability mechanics
References
4- www.exploit-db.com/exploits/46421nvdExploitVDB Entry
- www.vulncheck.com/advisories/valentina-studio-denial-of-service-via-host-parameternvdThird Party Advisory
- valentina-db.com/en/nvdProduct
- valentina-db.com/en/developer/database/download-valentina-database-adknvdProduct
News mentions
0No linked articles in our index yet.