CVE-2018-25242

Publication date

2026-04-04 13:51:09

Family

VulnCheck

State

PUBLISHED

Description

Microsoft One Search 1.1.0.0 contains a denial of service vulnerability that allows local attackers to crash the application by submitting excessively long input strings to the search functionality. Attackers can paste a buffer of 950 or more characters into the search bar to trigger an unhandled exception that crashes the application.