Vulnerability Description
Tree Studio 2.17 contains a denial of service vulnerability that allows local attackers to crash the application by providing malformed input through the keyboard interface. Attackers can trigger the vulnerability by entering arbitrary characters during application runtime, causing the application to become unresponsive or terminate abnormally.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Pixarra | Tree Studio | 2.17 |
Related Weaknesses (CWE)
References
- http://www.pixarra.com/Product
- http://www.pixarra.com/uploads/9/4/6/3/94635436/tbtreestudio_install.exeProduct
- https://www.exploit-db.com/exploits/46125ExploitThird Party AdvisoryVDB Entry
- https://www.vulncheck.com/advisories/tree-studio-denial-of-service-via-malformedThird Party Advisory
FAQ
What is CVE-2019-25620?
CVE-2019-25620 is a vulnerability with a CVSS score of 6.2 (MEDIUM). Tree Studio 2.17 contains a denial of service vulnerability that allows local attackers to crash the application by providing malformed input through the keyboard interface. Attackers can trigger the ...
How severe is CVE-2019-25620?
CVE-2019-25620 has been rated MEDIUM with a CVSS base score of 6.2/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2019-25620?
Check the references section above for vendor advisories and patch information. Affected products include: Pixarra Tree Studio.