CNNVD-202602-888 Information

CNNVD ID

CNNVD-202602-888

CVE-2019-25274

  • CNNVD Published: 2026-02-05

Description (Chinese)

Photodex ProShow Producer是美国Photodex公司的一套视频和图片幻灯片制作软件。 Photodex ProShow Producer 9.0.3797版本存在代码问题漏洞,该漏洞源于ScsiAccess服务中未加引号的服务路径,可能导致本地攻击者执行任意代码并获取LocalSystem权限。

Description (English)

Photodex ProShow Producer is a video and photo slide production software for the United States company Phhotodex. Photodex ProShow Producer 9.0.3797 has a code problem loophole that originates from service paths without quotation marks in the ScsiAccess service, which may lead local attackers to enforce arbitrary codes and access LocalSystem privileges.

Hazard Level

Medium

Vulnerability Type

代码问题

Affected Vendor

Photodex

Published

2026-02-05

Last Modified

2026-02-24

References

http://www.photodex.com/ https://www.exploit-db.com/exploits/47705 https://www.vulncheck.com/advisories/proshow-producer-unquoted-service-path

Share on: