Vulnerability Description
An issue was discovered in Photodex ProShow Producer v9.0.3797 (an application that runs with Administrator privileges). It is possible to perform a buffer overflow via a crafted file.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Photodex | Proshow Producer | 9.0.3797 |
Related Weaknesses (CWE)
References
- http://packetstormsecurity.com/files/153249/ProShow-9.0.3797-Privilege-EscalatioExploitThird Party AdvisoryVDB Entry
- https://github.com/risataimpt/Archivos_del_Blog/tree/master/ProshowThird Party Advisory
- https://risataim.blogspot.com/2019/06/exploit-local-para-proshow.htmlExploitThird Party Advisory
- http://packetstormsecurity.com/files/153249/ProShow-9.0.3797-Privilege-EscalatioExploitThird Party AdvisoryVDB Entry
- https://github.com/risataimpt/Archivos_del_Blog/tree/master/ProshowThird Party Advisory
- https://risataim.blogspot.com/2019/06/exploit-local-para-proshow.htmlExploitThird Party Advisory
FAQ
What is CVE-2019-12788?
CVE-2019-12788 is a vulnerability with a CVSS score of 7.8 (HIGH). An issue was discovered in Photodex ProShow Producer v9.0.3797 (an application that runs with Administrator privileges). It is possible to perform a buffer overflow via a crafted file.
How severe is CVE-2019-12788?
CVE-2019-12788 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2019-12788?
Check the references section above for vendor advisories and patch information. Affected products include: Photodex Proshow Producer.