Record summary

CVE-2018-25322 has a selected CVSS score of 8.6 (high); EIP currently links 1 catalogued exploit.

Description

Allok Fast AVI MPEG Splitter 1.2 contains a stack based buffer overflow vulnerability that allows local attackers to execute arbitrary code by supplying a malicious license name string. Attackers can craft a payload with 780 bytes of junk data followed by structured shellcode and place it in the License Name field to trigger the overflow and execute code with application privileges.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1

CISA SSVC decision

ExploitationPoC
AutomatableNo
Technical impactTotal

CISA Coordinator · SSVC 2.0.3 · Evaluated May 18, 2026 · Source: CVE List

Affected products and versions

1
ProductSourceVersion rangeStatus
CVE List1.2affected

Proofs of concept

1

Catalogued exploits

ExploitDBFast AVI MPEG Splitter 1.2 - Stack-Based Buffer OverflowExploitDB exploitby Mohan Ravichandran and Velayutham SelvarajNot analyzed1 file
ExploitDB

PoC details

References

5