vendor:
CEWE Photoshow
by:
Gionathan 'John' Reale
N/A
CVSS
N/A
Denial of Service
CWE
Product Name: CEWE Photoshow
Affected Version From: 6.3.2004
Affected Version To:
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested: Windows 10
2018
CEWE Photoshow 6.3.4 – Denial of Service (PoC)
This exploit creates a malicious payload that causes a denial of service in the CEWE Photoshow 6.3.4 software. By running the python exploit script and copying the text inside the created 'exploit.txt' file, the user can trigger a crash by pasting the content into the 'email address' and 'Password' fields in the CEWE Photoshow program.
Mitigation:
Unknown