vendor:
Smart PC Recorder
by:
chap0
7,5
CVSS
HIGH
Buffer Overflow
120 (Buffer Copy without Checking Size of Input)
CWE
Product Name: Smart PC Recorder
Affected Version From: 4.8
Affected Version To: 4.8
Patch Exists: YES
Related CWE: N/A
CPE: a:voiceemotion:smart_pc_recorder
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows XP SP3/Windows 7
2010
Smart PC Recorder .MP3 Local Crash POC
This exploit is a proof of concept for a buffer overflow vulnerability in Smart PC Recorder .MP3. The exploit creates a malicious .mp3 file with a single character of 'A' which causes the application to crash when opened.
Mitigation:
The vendor has released a patch to address this vulnerability.