CVE-2011-5002

Finaldraft < 8.01 - Memory Corruption

Title source: rule

Description

Multiple stack-based buffer overflows in Final Draft 8 before 8.02 allow remote attackers to execute arbitrary code via a .fdx or .fdxt file with long (1) Word, (2) Transition, (3) Location, (4) Extension, (5) SceneIntro, (6) TimeOfDay, and (7) Character elements.

Exploits (1)

exploitdb WORKING POC
by Nick Freeman · rubylocalwindows
https://www.exploit-db.com/exploits/18184

Scores

EPSS 0.0969
EPSS Percentile 92.9%

Details

CWE
CWE-119
Status published
Products (1)
finaldraft/finaldraft < 8.01
Published Dec 25, 2011
Tracked Since Feb 18, 2026