vendor:
Allok Video Converter
by:
Mohan Ravichandran & Velayutham Selvaraj
7.5
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: Allok Video Converter
Affected Version From: 4.6.1217
Affected Version To: 4.6.1217
Patch Exists: NO
Related CWE:
CPE: a:alloksoft:allok_video_converter:4.6.1217
Platforms Tested: Windows XP SP3
2018
Allok Video Converter – Buffer Overflow Vulnerability
This exploit allows an attacker to run arbitrary code on a system with Allok Video Converter installed. By creating a specially crafted file and pasting its contents into the License Name field, an attacker can trigger a buffer overflow and execute arbitrary code.
Mitigation:
Update to the latest version of Allok Video Converter or remove the software from the system.