CVE 8.4 HIGH

VideoCharge Studio 2.12.3.685 SEH Buffer Overflow via .VSC File_CVE-2025-34123

8.4 / 10
HIGH
CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N

Description

A stack-based buffer overflow vulnerability exists in VideoCharge Studio 2.12.3.685 when processing a specially crafted .VSC configuration file. The issue occurs due to improper handling of user-supplied data in the XML 'Name' attribute, leading to an SEH overwrite condition. An attacker can exploit this vulnerability by convincing a user to open a malicious .VSC file, resulting in arbitrary code execution under the context of the user.

Basic Information

ID CVE-2025-34123
Source VulnCheck
Published Jul 16, 2025 at 21:07
Modified Jul 17, 2025 at 19:43

Affected Product

Vendor VideoCharge Software
Product Studio
Version 2.12.3.685
Affected Versions VideoCharge Software Studio 2.12.3.685

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.