CVE-2018-25211

Severity CVSS v4.0:
HIGH
Type:
CWE-787 Out-of-bounds Write
Publication date:
26/03/2026
Last modified:
27/03/2026

Description

Allok Video Splitter 3.1.1217 contains a buffer overflow vulnerability that allows local attackers to cause a denial of service or execute arbitrary code by supplying an oversized string in the License Name field. Attackers can craft a malicious payload exceeding 780 bytes, paste it into the License Name registration field, and trigger the overflow when the Register button is clicked.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:alloksoft:video_splitter:3.1.1217:*:*:*:*:*:*:*