Description
Socusoft Photo to Video Converter Professional 8.07 contains a local buffer overflow vulnerability in the 'Output Folder' input field that allows attackers to execute arbitrary code. Attackers can craft a malicious payload and paste it into the output folder field to trigger a stack-based buffer overflow and potentially execute shellcode.
Problem types
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
Product status
Credits
MasterVlad
References
www.exploit-db.com/exploits/48691 (ExploitDB-48691)
web.archive.org/...ideshow.com/photo-to-video-converter.html (Archived Vendor Homepage)
www.vulncheck.com/...fessional-output-folder-buffer-overflow (VulnCheck Advisory: Socusoft Photo to Video Converter Professional 8.07 - 'Output Folder' Buffer Overflow)