ASPRunner.NET 10.1 contains a denial of service vulnerability that allows local attackers to crash the application by supplying an excessively long string in the table name field. Attackers can input a buffer of 10000 characters in the table name parameter during database table creation to trigger an application crash.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Sun, 22 Mar 2026 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | ASPRunner.NET 10.1 contains a denial of service vulnerability that allows local attackers to crash the application by supplying an excessively long string in the table name field. Attackers can input a buffer of 10000 characters in the table name parameter during database table creation to trigger an application crash. | |
| Title | ASPRunner.NET 10.1 Denial of Service via Table Name Field | |
| First Time appeared |
Xlinesoft
Xlinesoft phprunner |
|
| Weaknesses | CWE-807 | |
| CPEs | cpe:2.3:a:xlinesoft:phprunner:10.1:*:*:*:*:*:*:* | |
| Vendors & Products |
Xlinesoft
Xlinesoft phprunner |
|
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-03-22T13:38:31.897Z
Reserved: 2026-03-22T12:54:32.136Z
Link: CVE-2019-25594
No data.
Status : Received
Published: 2026-03-22T14:16:26.220
Modified: 2026-03-22T14:16:26.220
Link: CVE-2019-25594
No data.
OpenCVE Enrichment
Updated: 2026-03-23T09:46:24Z
Weaknesses