Easy Video to iPod Converter
cpe:2.3:a:ether_software:easy_video_to_ipod_converter:*:*:*:*:*:*:*
- <= 1.6.20
A local buffer overflow vulnerability has been identified in Easy Video to iPod Converter version 1.6.20. The issue resides in the user registration field, where attackers can input a crafted payload exceeding 996 bytes. This overflow allows for the overwriting of the structured exception handler, potentially leading to the execution of arbitrary code with user privileges.
Exploitation of this vulnerability allows for a local buffer overflow, with the potential to overwrite the structured exception handler and execute arbitrary code with user privileges.
To reproduce this vulnerability, run Easy Video to iPod Converter 1.6.20 and navigate to the registration section. In the 'Enter User Name' field, input a payload that exceeds 996 bytes. Once the payload is entered, click 'OK' to trigger the buffer overflow.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.