vendor:
Ace Video Workshop
by:
SecurityFocus
9.3
CVSS
HIGH
Arbitrary Code Execution
94
CWE
Product Name: Ace Video Workshop
Affected Version From: 1.2.0.0
Affected Version To: 1.2.0.0
Patch Exists: NO
Related CWE: N/A
CPE: a:ace_video_workshop:ace_video_workshop:1.2.0.0
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows
2009
Ace Video Workshop Arbitrary Code Execution Vulnerability
Ace Video Workshop is prone to an arbitrary-code-execution vulnerability. An attacker can exploit this issue by enticing a legitimate user to use the vulnerable application to open a file from a network share location that contains a specially crafted Dynamic Link Library (DLL) file. Ace Video Workshop 1.2.0.0 is vulnerable; other versions may also be affected.
Mitigation:
Users should avoid opening files from untrusted or unknown sources.