CVE-2012-10051 describes a stack-based buffer overflow in Photodex ProShow Producer version 5.0.3256, triggered by a specially crafted plugin load list file. This vulnerability allows for high impact to confidentiality, integrity, and availability, with a CVSS score of 8.4 (High), and requires local access and user interaction for exploitation. While not actively exploited (KEV: No), a Metasploit module exists, and the CVE has garnered significant community discussion.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
| Photodex Corporation | ProShow Producer | 5.0.3256CNA affecteddefault unknown |
CVSS version used by this source: 4.0
CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.