CVE-2018-25241
HIGH
NVD
CVSS Score
7.5
Severity
HIGH
Published
Apr 04, 2026
Vendor
unknown
Description
Microsoft VPN Browser+ 1.1.0.0 contains a denial of service vulnerability that allows unauthenticated attackers to crash the application by submitting oversized input through the search functionality. Attackers can paste a large buffer of characters into the search bar to trigger an unhandled exception that terminates the application.