Vulnerabilities (CVE)

Filtered by vendor Alloksoft Subscribe
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2019-25362 1 Alloksoft 1 Wmv To Avi Mpeg Dvd Wmv Convertor 2026-02-27 N/A 9.8 CRITICAL
WMV to AVI MPEG DVD WMV Convertor 4.6.1217 contains a buffer overflow vulnerability that allows attackers to execute arbitrary code by overwriting the license name and license code fields. Attackers can craft a malicious payload of 6000 bytes to trigger a bind shell on port 4444 by exploiting a stack-based buffer overflow in the application's input handling.
CVE-2019-25363 1 Alloksoft 1 Wmv To Avi Mpeg Dvd Wmv Convertor 2026-02-26 N/A 7.5 HIGH
WMV to AVI MPEG DVD WMV Convertor 4.6.1217 contains a buffer overflow vulnerability that allows attackers to crash the application by providing an oversized license input. Attackers can generate a 6000-byte payload and paste it into the 'License Name and License Code' field to trigger an application crash.