CVE-2018-25239: Smartvpn Smart VPN

Medium severity, CVSS 6.2. EPSS: 0.2% chance of exploitation in the next 30 days.

Smart VPN 1.1.3.0 contains a denial of service vulnerability that allows local attackers to crash the application by submitting oversized input through the search interface. Attackers can paste a buffer of 2100 characters into the top right search bar to trigger an unhandled exception that crashes the application.

Affected products

  • Smartvpn Smart VPN: version 1.1.3.0 only

Published 2026-04-04. Last modified 2026-07-21.