Unrated severityNVD Advisory· Published Dec 22, 2025· Updated Dec 22, 2025
Cobian Reflector 0.9.93 RC1 Local Denial of Service via Password Field
CVE-2022-50689
Description
Cobian Reflector 0.9.93 RC1 contains a denial of service vulnerability that allows attackers to crash the application by overflowing the password input field. Attackers can paste a large 8000-byte buffer into the password field to trigger an application crash during SFTP task configuration.
Affected products
2- Range: = 0.9.93 RC1
- Cobiansoft/Cobian Reflectorv5Range: 0.9.93
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- www.exploit-db.com/exploits/50789mitreexploit
- www.vulncheck.com/advisories/cobian-reflector-rc-local-denial-of-service-via-password-fieldmitrethird-party-advisory
- www.cobiansoft.commitreproduct
News mentions
0No linked articles in our index yet.