CVE-2018-25238

Publication date

2026-04-04 13:51:06

Family

VulnCheck

State

PUBLISHED

Description

Microsoft VSCO 1.1.1.0 contains a denial of service vulnerability that allows local attackers to crash the application by submitting an excessively long string through the search functionality. Attackers can paste a buffer of 5000 characters into the search bar and navigate back to trigger an application crash.