Home

Description

SocuSoft iPod Photo Slideshow 8.05 contains a buffer overflow vulnerability in the registration dialog that allows local attackers to execute arbitrary code by overwriting the structured exception handler. Attackers can craft malicious input in the Registration Name and Registration Key fields to trigger a stack-based buffer overflow and execute a reverse shell payload.

PUBLISHED Reserved 2026-05-25 | Published 2026-05-25 | Updated 2026-05-26 | Assigner VulnCheck




HIGH: 8.6CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
HIGH: 8.4CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Problem types

Stack-based Buffer Overflow

Product status

8.05
affected

Credits

Shubham Singh finder

References

www.exploit-db.com/exploits/45350 (ExploitDB-45350) exploit

www.dvd-photo-slideshow.com/ipod-photo-slideshow.html (Product Reference) product

www.vulncheck.com/...pod-photo-slideshow-buffer-overflow-seh (VulnCheck Advisory: SocuSoft iPod Photo Slideshow 8.05 Buffer Overflow SEH) third-party-advisory

cve.org (CVE-2018-25375)

nvd.nist.gov (CVE-2018-25375)

Download JSON