PT-2026-6827 · Unknown · Wedding Slideshow Studio

Published

2026-02-06

·

Updated

2026-02-07

·

CVE-2020-37161

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Wedding Slideshow Studio version 1.36
Description Wedding Slideshow Studio version 1.36 contains a buffer overflow that allows attackers to execute arbitrary code. This is achieved by overwriting the registration name field with a malicious payload. An attacker can craft a specific payload to trigger remote code execution, such as launching system commands like the calculator. The vulnerable parameter is the registration name field.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

RCE

Stack Overflow

Weakness Enumeration

Related Identifiers

CVE-2020-37161

Affected Products

Wedding Slideshow Studio