CVE-2019-25362

WMV to AVI MPEG DVD WMV Convertor 4.6.1217 contains a buffer overflow vulnerability that allows attackers to execute arbitrary code by overwriting the license name and license code fields. Attackers can craft a malicious payload of 6000 bytes to trigger a bind shell on port 4444 by exploiting a stack-based buffer overflow in the application's input handling.
Configurations

Configuration 1 (hide)

cpe:2.3:a:alloksoft:wmv_to_avi_mpeg_dvd_wmv_convertor:4.6.1217:*:*:*:*:*:*:*

History

No history.

Information

Published : 2026-02-18 22:16

Updated : 2026-02-27 15:17


NVD link : CVE-2019-25362

Mitre link : CVE-2019-25362

CVE.ORG link : CVE-2019-25362


JSON object : View

Products Affected

alloksoft

  • wmv_to_avi_mpeg_dvd_wmv_convertor
CWE
CWE-787

Out-of-bounds Write