Impact
Tobit Laboratories AG's TeamDavid Webbox application handles password changes through a function triggered by including the string "(editini)" in the file path. The function writes the new password to a specified Archive.ini file but does not verify that the given path refers to an Archive.ini file. An attacker can supply a file path with excessive size, causing a buffer overflow that crashes the server. This allows an unauthenticated attacker to cause a denial of service. The issue affects TeamDavid versions before Rollout 528; starting with Rollout 528 the affected functionality is disabled by default, eliminating exposure through this path.
Affected Systems
TeamDavid Webbox from Tobit Laboratories AG, versions before Rollout 528 are affected.
Risk and Exploitability
The CVSS score of 8.9 indicates high severity. EPSS is <1%, and the vulnerability is not listed in CISA KEV, suggesting no widespread exploitation yet. The vulnerability permits an unauthenticated attacker to trigger a buffer overflow via the password change endpoint, crashing the server and denying service. The issue is no longer exposed in versions Rollout 528 and later, so only deployments using older releases are at risk.
OpenCVE Enrichment