Impact
OriginLab Origin Viewer the parsing of .ogm files, which can result in arbitrary code execution. The vulnerability arises from insufficient validation of user‑supplied data during file parsing, allowing a malicious file to overwrite memory and execute code in the context of the current process. The attacker can achieve full control of the targeted application instance, potentially compromising the system that runs Origin Viewer.
Affected Systems
The affected product is OriginLab Origin Viewer. No specific version information was provided, so all installations of this application that have not applied a patch are potentially vulnerable.
Risk and Exploitability
The CVSS score of 7.8 indicates high severity, yet the exploit requires user interaction; the target must open a malicious .ogm file or visit a malicious page that triggers the file download. The EPSS score is < 1%, indicating a very low exploitation probability, and the vulnerability is not listed in the CISA KEV catalog, suggesting that publicly known exploitation is limited. Nevertheless, the potential for remote code vector is likely via social engineering or compromised websites.
OpenCVE Enrichment