CVE-2020-28967

Severity CVSS v4.0:
Pending analysis
Type:
CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
Publication date:
22/10/2021
Last modified:
28/10/2021

Description

FlashGet v1.9.6 was discovered to contain a buffer overflow in the 'current path directory' function. This vulnerability allows attackers to elevate local process privileges via overwriting the registers.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:flashget:flashget:1.9.6:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools