Advisories

Easy CD & DVD Cover Creator 4.13 - Denial of Service

Go Back
severity
medium
date
Affecting
  • Easy CD & DVD Cover Creator 4.13

CWE
  • CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
CVSS
5.1
CVSS V4 Vector
CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N
Credit
Achilles
Description
Easy CD & DVD Cover Creator 4.13 contains a buffer overflow vulnerability in the serial number input field that allows attackers to crash the application. Attackers can generate a 6000-byte payload and paste it into the serial number field to trigger an application crash.