AbsoluteTelnet 11.24 contains a denial of service vulnerability that allows local attackers to crash the application by manipulating username and error report fields. Attackers can trigger the crash by inserting 1000 characters into the username or email address fields, causing the application to become unresponsive.
Metrics
Affected Vendors & Products
References
History
Fri, 16 Jan 2026 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Celestial Software
Celestial Software absolutetelnet |
|
| Vendors & Products |
Celestial Software
Celestial Software absolutetelnet |
Thu, 15 Jan 2026 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 15 Jan 2026 16:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | AbsoluteTelnet 11.24 contains a denial of service vulnerability that allows local attackers to crash the application by manipulating username and error report fields. Attackers can trigger the crash by inserting 1000 characters into the username or email address fields, causing the application to become unresponsive. | |
| Title | AbsoluteTelnet 11.24 - 'Username' Denial of Service (PoC) | |
| Weaknesses | CWE-787 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published: 2026-01-15T15:52:08.912Z
Updated: 2026-01-15T16:47:37.283Z
Reserved: 2026-01-14T14:39:44.735Z
Link: CVE-2021-47765
Updated: 2026-01-15T16:47:34.639Z
Status : Awaiting Analysis
Published: 2026-01-15T16:16:07.830
Modified: 2026-01-16T15:55:33.063
Link: CVE-2021-47765
No data.