Vulnerability Description
Socusoft Co Photo 2 Video Converter 8.0.0 is affected by: Buffer Overflow - Local shell-code execution and Denial of Service. The impact is: Local privilege escalation (dependant upon conditions), shell code execution and denial-of-service. The component is: pdmlog.dll library. The attack vector is: The attacker must have access to local system (either directly, or remotley).
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Socusoft | Photo 2 Video Converter | 8.0.0 |
Related Weaknesses (CWE)
References
- https://packetstormsecurity.com/files/145181/SocuSoft-Co.-Photo-2-Video-ConverteExploitThird Party AdvisoryVDB Entry
- https://ret2eax.github.io/posts/socusoft-bof.htmlExploitThird Party Advisory
- https://www.exploit-db.com/exploits/43208/ExploitThird Party AdvisoryVDB Entry
- https://packetstormsecurity.com/files/145181/SocuSoft-Co.-Photo-2-Video-ConverteExploitThird Party AdvisoryVDB Entry
- https://ret2eax.github.io/posts/socusoft-bof.htmlExploitThird Party Advisory
- https://www.exploit-db.com/exploits/43208/ExploitThird Party AdvisoryVDB Entry
FAQ
What is CVE-2019-1010163?
CVE-2019-1010163 is a vulnerability with a CVSS score of 7.8 (HIGH). Socusoft Co Photo 2 Video Converter 8.0.0 is affected by: Buffer Overflow - Local shell-code execution and Denial of Service. The impact is: Local privilege escalation (dependant upon conditions), she...
How severe is CVE-2019-1010163?
CVE-2019-1010163 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2019-1010163?
Check the references section above for vendor advisories and patch information. Affected products include: Socusoft Photo 2 Video Converter.