CVE-2020-36967
Unknown Unknown - Not Provided
Buffer Overflow in Zortam Mp3 Studio Enables Remote Code Execution

Publication date: 2026-01-28

Last updated on: 2026-01-28

Assigner: VulnCheck

Description
Zortam Mp3 Media Studio 27.60 contains a buffer overflow vulnerability in the library creation file selection process that allows remote code execution. Attackers can craft a malicious text file with shellcode to trigger a structured exception handler (SEH) overwrite and execute arbitrary commands on the target system.
CVSS Scores
EPSS Scores
Probability:
Percentile:
Meta Information
Published
2026-01-28
Last Modified
2026-01-28
Generated
2026-05-07
AI Q&A
2026-01-29
EPSS Evaluated
2026-05-05
NVD
EUVD
Affected Vendors & Products
Showing 1 associated CPE
Vendor Product Version / Range
zortam zortam_mp3_media_studio 27.60
Helpful Resources
Exploitability
CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-121 A stack-based buffer overflow condition is a condition where the buffer being overwritten is allocated on the stack (i.e., is a local variable or, rarely, a parameter to a function).
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?

This vulnerability is a buffer overflow in Zortam Mp3 Media Studio 27.60 that occurs during the library creation file selection process. An attacker can create a malicious text file containing shellcode that triggers a structured exception handler (SEH) overwrite, allowing them to execute arbitrary commands remotely on the affected system.


How can this vulnerability impact me? :

The vulnerability can allow an attacker to execute arbitrary code on your system remotely, potentially leading to full system compromise, unauthorized access, data theft, or disruption of services.


Ask Our AI Assistant
Need more information? Ask your question to get an AI reply (Powered by our expertise)
0/70
EPSS Chart