vendor:
Photo to Video Converter Professional
by:
ZwX
9.3
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: Photo to Video Converter Professional
Affected Version From: 8.07
Affected Version To: 8.07
Patch Exists: YES
Related CWE: N/A
CPE: a:socusoft:photo_to_video_converter_professional:8.07
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: Windows 7
2018
Socusoft Photo to Video Converter 8.07 – ‘Registration Name’ Buffer Overflow
Socusoft Photo to Video Converter Professional 8.07 is vulnerable to a buffer overflow when a maliciously crafted input is supplied to the 'Registration Name' field. This can be exploited to execute arbitrary code by tricking a user into opening a specially crafted file. The vulnerability is due to a lack of proper bounds checking of the user-supplied data before copying it to a fixed-length buffer.
Mitigation:
Upgrade to the latest version of Socusoft Photo to Video Converter Professional 8.07 or later.