Critical severity9.8NVD Advisory· Published Aug 22, 2024· Updated Jun 17, 2026
CVE-2024-45166
CVE-2024-45166
Description
An issue was discovered in UCI IDOL 2 (aka uciIDOL or IDOL2) through 2.12. Due to improper input validation, improper deserialization, and improper restriction of operations within the bounds of a memory buffer, IDOL2 is vulnerable to Denial-of-Service (DoS) attacks and possibly remote code execution. There is an access violation and EIP overwrite after five logins.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- UCI Software GmbH/IDOL 2description
Patches
Vulnerability mechanics
References
5- www.syss.de/fileadmin/dokumente/Publikationen/Advisories/SYSS-2024-050.txtnvdExploitThird Party Advisory
- download.uci.de/idol2/idol2Client_2_12.exenvdBroken Link
- uci.de/download/idol2-client.htmlnvdProductRelease Notes
- uci.de/products/index.htmlnvdProduct
- www.syss.de/en/responsible-disclosure-policynvdIssue Tracking
News mentions
0No linked articles in our index yet.