CVE-2019-12810: Estsoft Alsee

High severity, CVSS 7.8. EPSS: 1.2% chance of exploitation in the next 30 days.

A memory corruption vulnerability exists in the .PSD parsing functionality of ALSee v5.3 ~ v8.39. A specially crafted .PSD file can cause an out of bounds write vulnerability resulting in code execution. By persuading a victim to open a specially-crafted .PSD file, an attacker could execute arbitrary code.

Affected products

  • Estsoft Alsee: from 5.3, up to and including 8.39

Published 2019-08-30. Last modified 2026-06-17.