vendor:
LabelPrint
by:
f3ci
7.8
CVSS
HIGH
Unicode Stack Overflow
119
CWE
Product Name: LabelPrint
Affected Version From: 2.5
Affected Version To: 2.5
Patch Exists: NO
Related CWE: CVE-2017-14627
CPE: a:cyberlink:labelprint:2.5
Platforms Tested: Windows 7x86, Windows8.1x64, Windows 10
2017
CyberLink LabelPrint <=2.5 File Project Processing Unicode Stack Overflow
This exploit takes advantage of a stack overflow vulnerability in CyberLink LabelPrint <=2.5. The vulnerability allows an attacker to execute arbitrary code by creating a specially crafted project file.
Mitigation:
Update to a patched version of CyberLink LabelPrint.