Описание
Stack-based buffer overflow in the ID_X.apl plugin in ACDSee 9.0 Build 108, Pro 8.1 Build 99, and Photo Editor 4.0 Build 195 allows user-assisted remote attackers to execute arbitrary code via a crafted XPM file with a long section string. NOTE: some of these details are obtained from third party information.
Ссылки
- Vendor Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:acd_systems:acdsee:8.1_build_99:*:pro:*:*:*:*:*
cpe:2.3:a:acd_systems:acdsee:9.0_build_108:*:*:*:*:*:*:*
cpe:2.3:a:acd_systems:photo_editor:4.0_build_195:*:*:*:*:*:*:*
EPSS
Процентиль: 99%
0.78364
Высокий
9.3 Critical
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
почти 4 года назад
Stack-based buffer overflow in the ID_X.apl plugin in ACDSee 9.0 Build 108, Pro 8.1 Build 99, and Photo Editor 4.0 Build 195 allows user-assisted remote attackers to execute arbitrary code via a crafted XPM file with a long section string. NOTE: some of these details are obtained from third party information.
EPSS
Процентиль: 99%
0.78364
Высокий
9.3 Critical
CVSS2
Дефекты
NVD-CWE-Other