Buffer overflow in VideoSpirit Pro 1.6.8.1, 1.68, and previous versions; and VideoSpirit Lite 1.4.0.1 and possibly other versions; allows user-assisted remote malicious users to execute arbitrary code via a VideoSpirit project (.visprj) file containing a valitem element with a long "value" attribute, as demonstrated using a valitem with the mp3 name.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
verytools videospirit lite 1.4.0.1 |
||
verytools videospirit pro 1.6.8.1 |
||
verytools videospirit pro |