PT-2026-6827 · Unknown · Wedding Slideshow Studio
CVE-2020-37161
·
Publicado
2026-02-06
·
Atualizado
2026-02-07
CVSS v3.1
9.8
Crítica
| Vetor | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Wedding Slideshow Studio version 1.36
Description
Wedding Slideshow Studio version 1.36 contains a buffer overflow that allows attackers to execute arbitrary code. This is achieved by overwriting the registration name field with a malicious payload. An attacker can craft a specific payload to trigger remote code execution, such as launching system commands like the calculator. The vulnerable parameter is the registration name field.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
RCE
Stack Overflow
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Wedding Slideshow Studio