Tree Studio 2.17 contains a denial of service vulnerability that allows local attackers to crash the application by providing malformed input through the keyboard interface. Attackers can trigger the vulnerability by entering arbitrary characters during application runtime, causing the application to become unresponsive or terminate abnormally.
References
| Link | Resource |
|---|---|
| http://www.pixarra.com/ | Product |
| http://www.pixarra.com/uploads/9/4/6/3/94635436/tbtreestudio_install.exe | Product |
| https://www.exploit-db.com/exploits/46125 | Exploit Third Party Advisory VDB Entry |
| https://www.vulncheck.com/advisories/tree-studio-denial-of-service-via-malformed-input | Third Party Advisory |
Configurations
History
24 Mar 2026, 14:23
| Type | Values Removed | Values Added |
|---|---|---|
| First Time |
Pixarra
Pixarra tree Studio |
|
| CPE | cpe:2.3:a:pixarra:tree_studio:2.17:*:*:*:*:*:*:* | |
| References | () http://www.pixarra.com/ - Product | |
| References | () http://www.pixarra.com/uploads/9/4/6/3/94635436/tbtreestudio_install.exe - Product | |
| References | () https://www.exploit-db.com/exploits/46125 - Exploit, Third Party Advisory, VDB Entry | |
| References | () https://www.vulncheck.com/advisories/tree-studio-denial-of-service-via-malformed-input - Third Party Advisory |
23 Mar 2026, 14:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-03-23 14:16
Updated : 2026-03-24 14:23
NVD link : CVE-2019-25620
Mitre link : CVE-2019-25620
CVE.ORG link : CVE-2019-25620
JSON object : View
Products Affected
pixarra
- tree_studio
CWE
CWE-168
Improper Handling of Inconsistent Special Elements
