9.3
CVSSv2

CVE-2009-4251

Published: 10/12/2009 Updated: 17/08/2017
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 935
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Stack-based buffer overflow in Jasc Paint Shop Pro 8.10 (aka Corel Paint Shop Pro) allows user-assisted remote malicious users to execute arbitrary code via a crafted PNG file. NOTE: this might be the same issue as CVE-2007-2366.

Vulnerable Product Search on Vulmon Subscribe to Product

corel paint shop pro 8.10

Exploits

/* Software: Jasc Paint Shop Pro v8 Local Buffer Overflow Exploit (UNIVERSAL) Bug type: Local buffer overflow Exploitation method: SEH handler overwrite Description: When a crafted PNG file is oppened a stack buffer overflow occurs because of DEP a SEH handler is overwriten and I overwriten his address with a POP/POP/RET ...