Description
River Past Audio Converter 7.7.16 contains a local buffer overflow vulnerability in the activation code field that allows local attackers to crash the application by supplying an oversized input string. Attackers can paste a large payload of repeated characters into the -E-Mail and Activation Code- field and click -Activate- to trigger a denial of service condition.
CVSS 5.5EPSS 0.11299999999999999%Risk 0.56
View source- Published
- 2026-03-26 14:16:06
- Affected versions
- <=7.7.16
- Type
- Installed app
- Vector
- CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H