CVE-2019-25648
MEDIUMMyVideoConverter Pro 3.14 Denial of Service Buffer Overflow
Title source: cnaExploitation Summary
EIP tracks 1 public exploit for CVE-2019-25648. PoCs published by Achilles.
AI-analyzed exploit summary This exploit demonstrates a local buffer overflow vulnerability in MyVideoConverter Pro 3.14 by generating a large payload (10,000 'A' characters) and writing it to a file. The crash occurs when the payload is pasted into the 'Copy and Paste Registration Code' field, triggering a denial of service.
Description
MyVideoConverter Pro 3.14 contains a local buffer overflow vulnerability that allows attackers to crash the application by supplying an excessively long string to the registration code input field. Attackers can paste a malicious payload containing 10000 bytes into the 'Copy and Paste Registration Code' field to trigger a denial of service condition.
Exploits (1)
This exploit demonstrates a local buffer overflow vulnerability in MyVideoConverter Pro 3.14 by generating a large payload (10,000 'A' characters) and writing it to a file. The crash occurs when the payload is pasted into the 'Copy and Paste Registration Code' field, triggering a denial of service.
References (3)
Scores
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H