CVE-2018-25232: Softros Lan Messenger
Medium severity, CVSS 5.5. EPSS: 0.3% chance of exploitation in the next 30 days.
Softros LAN Messenger 9.2 contains a denial of service vulnerability that allows local attackers to crash the application by supplying an excessively long string to the custom log files location field. Attackers can input a buffer of 2000 characters in the Log Files Location custom path parameter to trigger a crash when the OK button is clicked.
Affected products
- Softros Softros Lan Messenger: up to and including 9.2
Published 2026-03-30. Last modified 2026-06-17.