PT-2026-7682 · Allok Soft · Allok Video Converter

Published

2026-02-11

·

Updated

2026-02-11

·

CVE-2020-37184

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Allok Video Converter version 4.6.1217
Description A stack overflow occurs in the License Name input field, allowing attackers to execute arbitrary code. This is achieved by injecting malicious bytecode into the field to overwrite SEH (Structured Exception Handling) handlers, which are a mechanism for handling hardware and software exceptions, and subsequently execute system commands.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Stack Overflow

Weakness Enumeration

Related Identifiers

CVE-2020-37184

Affected Products

Allok Video Converter