CVE-2021-47813
7.5Nsauditor · Backup Key Recovery
A buffer overflow vulnerability in Nsauditor Backup Key Recovery 2.2.7 allows local attackers to cause a denial of service by providing a specially crafted registration key.
Executive summary
A buffer overflow vulnerability in Nsauditor Backup Key Recovery 2.2.7.0 can be exploited by local users to crash the application, resulting in a denial of service.
Vulnerability
The application is susceptible to a classic buffer overflow (CWE-120) because it fails to perform adequate bounds checking on the registration key input field. An attacker can trigger application instability and a crash by providing a long string of 256 repeated characters.
Business impact
Successful exploitation results in the immediate termination of the Backup Key Recovery software. While the impact is primarily localized to the application, the resulting denial of service could disrupt administrative workflows reliant on this tool for key management. The CVSS score of 7.5 reflects the high availability impact, although the requirement for local access and user interaction limits the overall risk profile.
Remediation
Immediate Action: There is currently no official patch available from the vendor. Users should restrict access to the application executable and avoid entering untrusted registration data.
Proactive Monitoring: Monitor system event logs and application crash reports for recurring instability or unexpected process termination events associated with the Backup Key Recovery utility.
Compensating Controls: Implement endpoint security policies to restrict the execution of the application to authorized administrative accounts, thereby reducing the likelihood of a malicious actor interacting with the vulnerable registration interface.
Exploitation status
Public Exploit Available: Yes, a proof of concept is available via the Exploit Database (EDB-ID 49966).
Analyst recommendation
Given the availability of a public proof of concept and the lack of a vendor-supplied patch, organizations should treat this vulnerability as a credible threat to local system availability. Administrators are advised to limit access to this software and maintain vigilance for potential exploitation attempts until a permanent fix is released.
More Nsauditor CVEs
Sources
Originally found and disclosed by Erick Galindo, per the CVE Program record.
- ExploitDB-49966 Exploit / PoC
- Vendor Homepage
- VulnCheck Advisory: Backup Key Recovery 2.2.7 - Denial of Service (PoC) Third-party advisory