vendor:
MyVideoConverter Pro
by:
ZwX
7.5
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: MyVideoConverter Pro
Affected Version From: 3.14
Affected Version To: 3.14
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested: Windows 10 v1803
2020
MyVideoConverter Pro 3.14 – ‘TVSeries’ Buffer Overflow
This exploit takes advantage of a buffer overflow vulnerability in MyVideoConverter Pro version 3.14. By providing a specially crafted input to the 'TVSeries' field, an attacker can overwrite the program's stack and execute arbitrary code.
Mitigation:
The vendor should release a patch to fix the buffer overflow vulnerability. In the meantime, users should avoid using the affected version of the software or apply appropriate network-level controls to mitigate the risk.