vendor:
AVS Audio Converter
by:
ZwX
7.8
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: AVS Audio Converter
Affected Version From: AVS Audio Converter 9.1
Affected Version To: AVS Audio Converter 9.1
Patch Exists: YES
Related CWE: N/A
CPE: a:avs4you:avs_audio_converter
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: Windows 7
2019
AVS Audio Converter 9.1 – ‘Exit folder’ Buffer Overflow
A local buffer overflow vulnerability has been discovered in the official AVS Audio Converter. The vulnerability allows local attackers to overwrite the registers (example eip) to compromise the local software process. The issue can be exploited by local attackers with system privileges to compromise the affected local computer system. The vulnerability is marked as classic buffer overflow issue.
Mitigation:
Ensure that all software is up to date and patched with the latest security updates.