Security Advisory
CVE-2019-25318
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
AVS Audio Converter 9.1.2.600 contains a stack overflow vulnerability that allows attackers to execute arbitrary code by manipulating the output folder text input. Attackers can craft a malicious payload that overwrites stack memory and triggers a bind shell on port 9999 when the Browse button is clicked.