Description
Allok Video Converter 4.6.1217 contains a stack overflow vulnerability in the License Name input field that allows attackers to execute arbitrary code. Attackers can craft a specially designed payload to overwrite SEH handlers and execute system commands by injecting malicious bytecode into the input field.
Published: 2026-02-11
Score: 8.4 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Analysis and contextual insights are available on OpenCVE Cloud.

Remediation

No vendor fix or workaround currently provided.

Additional remediation guidance may be available on OpenCVE Cloud.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Thu, 12 Feb 2026 16:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'poc', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Thu, 12 Feb 2026 09:45:00 +0000

Type Values Removed Values Added
First Time appeared Allok Soft
Allok Soft allok Video Converter
Vendors & Products Allok Soft
Allok Soft allok Video Converter

Wed, 11 Feb 2026 21:00:00 +0000

Type Values Removed Values Added
Description Allok Video Converter 4.6.1217 contains a stack overflow vulnerability in the License Name input field that allows attackers to execute arbitrary code. Attackers can craft a specially designed payload to overwrite SEH handlers and execute system commands by injecting malicious bytecode into the input field.
Title Allok Video Converter 4.6.1217 - Stack Overflow (SEH)
Weaknesses CWE-121
References
Metrics cvssV3_1

{'score': 9.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H'}

cvssV4_0

{'score': 8.4, 'vector': 'CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N'}


Subscriptions

Allok Soft Allok Video Converter
cve-icon MITRE

Status: PUBLISHED

Assigner: VulnCheck

Published:

Updated: 2026-02-12T15:03:28.508Z

Reserved: 2026-02-10T18:40:51.938Z

Link: CVE-2020-37184

cve-icon Vulnrichment

Updated: 2026-02-12T15:03:09.091Z

cve-icon NVD

Status : Deferred

Published: 2026-02-11T21:16:12.017

Modified: 2026-04-15T00:35:42.020

Link: CVE-2020-37184

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-02-12T09:35:51Z

Weaknesses