vendor:
Pixel Studio
by:
Ihsan Sencan
7.5
CVSS
HIGH
Denial of Service
400
CWE
Product Name: Pixel Studio
Affected Version From: 2.17
Affected Version To: 2.17
Patch Exists: YES
Related CWE: N/A
CPE: a:pixarra:pixel_studio
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: WiN7_x64/KaLiLinuX_x64
2019
Pixel Studio 2.17 – Denial of Service (PoC)
Pixel Studio 2.17 is vulnerable to a Denial of Service attack. By entering any character into the Pixel Studio Run / Enter Key, the application will crash. An attacker can exploit this vulnerability by creating a text file containing 10 'A' characters and then opening it with Pixel Studio.
Mitigation:
Upgrade to the latest version of Pixel Studio.