CVE-2018-25303 - Vulnerability Analysis
HighCVSS: 8.4Last Updated: April 29, 2026
Allok Video to DVD Burner - Remote Code Execution
Published: April 29, 2026Updated: April 29, 2026
Overview
Allok Video to DVD Burner 2.6.1217 contains a stack-based buffer overflow caused by improper handling of the License Name field, letting local attackers execute arbitrary code via SEH overwrite, exploit requires local access.
Severity & Score
Severity: High
CVSS Score: 8.4
Impact
Local attackers can execute arbitrary code, potentially gaining full control of the affected system.
Mitigation
Update to the latest version of Allok Video to DVD Burner.
References
Related Resources
Details
- CVE ID
- CVE-2018-25303
- Severity
- High
- CVSS Score
- 8.4
- Type
- buffer_overflow
- Status
- rejected
CWE
- CWE-121
CVSS Metrics
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H