Buffer Overflow Vulnerability in Socusoft 3GP Photo Slideshow by Socusoft
CVE-2018-25376
Key Information:
- Vendor
Socusoft
- Status
- Vendor
- CVE Published:
- 25 May 2026
Badges
What is CVE-2018-25376?
The Socusoft 3GP Photo Slideshow 8.05 contains a buffer overflow vulnerability within its registration dialog. This vulnerability allows local attackers to exploit the structured exception handling mechanism by supplying carefully crafted input in the 'Registration Name' and 'Registration Key' fields. By manipulating these fields, an attacker can overwrite the SEH chain, allowing for the execution of arbitrary code. This poses a significant security risk, enabling unauthorized access and control over the affected system via reverse shell execution.
Affected Version(s)
3GP Photo Slideshow 8.05
Exploit Proof of Concept (PoC)
PoC code is written by security researchers to demonstrate the vulnerability can be exploited. PoC code is also a key component for weaponization which could lead to ransomware.
References
CVSS V4
Timeline
- ๐ก
Public PoC available
- ๐พ
Exploit known to exist
Vulnerability published
Vulnerability Reserved
