Description
Allok Video Converter 4.6.1217 contains a stack overflow vulnerability in the License Name input field that allows attackers to execute arbitrary code. Attackers can craft a specially designed payload to overwrite SEH handlers and execute system commands by injecting malicious bytecode into the input field.
Problem types
Product status
Credits
Antonio de la Piedra
References
www.exploit-db.com/exploits/47908 (ExploitDB-47908)
www.alloksoft.com (Vendor Homepage)
www.vulncheck.com/...llok-video-converter-stack-overflow-seh (VulnCheck Advisory: Allok Video Converter 4.6.1217 - Stack Overflow (SEH))