PT-2026-6827 · Unknown · Wedding Slideshow Studio
Published
2026-02-06
·
Updated
2026-02-07
·
CVE-2020-37161
CVSS v3.1
9.8
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Wedding Slideshow Studio version 1.36
Description
Wedding Slideshow Studio version 1.36 contains a buffer overflow that allows attackers to execute arbitrary code. This is achieved by overwriting the registration name field with a malicious payload. An attacker can craft a specific payload to trigger remote code execution, such as launching system commands like the calculator. The vulnerable parameter is the registration name field.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
RCE
Stack Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Wedding Slideshow Studio