Boxoft wav-wma Converter 1.0 contains a local buffer overflow vulnerability in structured exception handling that allows attackers to execute arbitrary code by crafting malicious WAV files. Attackers can create a specially crafted WAV file with excessive data and ROP gadgets to overwrite the SEH chain and achieve code execution on Windows systems.
Metrics
Affected Vendors & Products
References
History
Fri, 27 Mar 2026 08:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Boxoft
Boxoft wav To Wma Converter |
|
| Vendors & Products |
Boxoft
Boxoft wav To Wma Converter |
Thu, 26 Mar 2026 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Boxoft wav-wma Converter 1.0 contains a local buffer overflow vulnerability in structured exception handling that allows attackers to execute arbitrary code by crafting malicious WAV files. Attackers can create a specially crafted WAV file with excessive data and ROP gadgets to overwrite the SEH chain and achieve code execution on Windows systems. | |
| Title | Boxoft wav-wma Converter 1.0 Local Buffer Overflow SEH | |
| Weaknesses | CWE-787 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published: 2026-03-26T13:24:13.757Z
Updated: 2026-03-26T13:24:13.757Z
Reserved: 2026-03-26T13:13:57.189Z
Link: CVE-2018-25212
No data.
Status : Awaiting Analysis
Published: 2026-03-26T14:16:04.740
Modified: 2026-03-26T15:13:15.790
Link: CVE-2018-25212
No data.