vendor:
Easy AVI DivX Converter
by:
Anurag Srivastava
7.5
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: Easy AVI DivX Converter
Affected Version From: 1.2.24
Affected Version To: 1.2.24
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested: Windows 7 x64
2017
Easy AVI DivX Converter 1.2.24 – ‘Enter User Name’ Field Buffer Overflow (SEH)
This exploit takes advantage of a buffer overflow vulnerability in the 'Enter User Name' field of Easy AVI DivX Converter 1.2.24. By providing a specially crafted input, an attacker can overwrite the SEH (Structured Exception Handler) and gain control of the program's execution flow. This exploit has been tested on Windows 7 x64.
Mitigation:
Apply the latest patch or update from the vendor.