Vulnerabilities > Cyberlink > Power2Go

DATE CVE VULNERABILITY TITLE RISK
2012-09-15 CVE-2011-5171 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Cyberlink Power2Go 7.0/8.0
Multiple stack-based buffer overflows in CyberLink Power2Go 7 (build 196) and 8 (build 1031) allow remote attackers to execute arbitrary code via the (1) src and (2) name parameters in a p2g project file.
network
cyberlink CWE-119
critical
9.3
2012-09-07 CVE-2010-5243 Unspecified vulnerability in Cyberlink Power2Go 7.0.0.0816
Multiple untrusted search path vulnerabilities in Cyberlink Power2Go 7.0.0.0816 allow local users to gain privileges via a Trojan horse (1) dwmapi.dll or (2) MFC71LOC.DLL file in the current working directory, as demonstrated by a directory that contains a .p2g, .iso, .pdl, .pds, or .p2i file.
local
cyberlink
6.9