9.3

CVSS4.0

CVE-2019-25364 - Win10 MailCarrier 2.51 - 'POP3 User' Remote Buffer Overflow

MailCarrier 2.51 contains a buffer overflow vulnerability in the POP3 USER command that allows remote attackers to execute arbitrary code. Attackers can send a crafted oversized buffer to the POP3 service, overwriting memory and potentially gaining remote system access.

๐Ÿ“… Published: Feb. 18, 2026, 9:55 p.m. ๐Ÿ”„ Last Modified: Feb. 24, 2026, 8:41 p.m.

8.4

CVSS4.0

CVE-2019-25363 - WMV to AVI MPEG DVD WMV Convertor 4.6.1217 - Denial of Service

WMV to AVI MPEG DVD WMV Convertor 4.6.1217 contains a buffer overflow vulnerability that allows attackers to crash the application by providing an oversized license input. Attackers can generate a 6000-byte payload and paste it into the 'License Name and License Code' field to trigger an applicatioโ€ฆ

๐Ÿ“… Published: Feb. 18, 2026, 9:55 p.m. ๐Ÿ”„ Last Modified: Feb. 26, 2026, 9:50 p.m.

9.3

CVSS4.0

CVE-2019-25362 - WMV to AVI MPEG DVD WMV Convertor 4.6.1217 - Buffer OverFlow

WMV to AVI MPEG DVD WMV Convertor 4.6.1217 contains a buffer overflow vulnerability that allows attackers to execute arbitrary code by overwriting the license name and license code fields. Attackers can craft a malicious payload of 6000 bytes to trigger a bind shell on port 4444 by exploiting a staโ€ฆ

๐Ÿ“… Published: Feb. 18, 2026, 9:55 p.m. ๐Ÿ”„ Last Modified: Feb. 27, 2026, 3:17 p.m.

8.6

CVSS4.0

CVE-2019-25361 - Ayukov NFTP client 1.71 - 'SYST' Buffer Overflow

Ayukov NFTP client 1.71 contains a buffer overflow vulnerability in the SYST command handling that allows remote attackers to execute arbitrary code. Attackers can send a specially crafted SYST command with oversized payload to trigger a buffer overflow and execute a bind shell on port 5150.

๐Ÿ“… Published: Feb. 18, 2026, 9:55 p.m. ๐Ÿ”„ Last Modified: Feb. 19, 2026, 8:09 p.m.

8.4

CVSS4.0

CVE-2019-25360 - Aida64 6.10.5200 - Buffer Overflow

Aida64 Engineer 6.10.5200 contains a buffer overflow vulnerability in the CSV logging configuration that allows attackers to execute malicious code by crafting a specially designed payload. Attackers can exploit the vulnerability by creating a malformed log file with carefully constructed SEH (Struโ€ฆ

๐Ÿ“… Published: Feb. 18, 2026, 9:55 p.m. ๐Ÿ”„ Last Modified: March 27, 2026, 4:57 p.m.

8.8

CVSS4.0

CVE-2019-25359 - SD.NET RIM 4.7.3c - 'idtyp' SQL Injection

SD.NET RIM versions before 4.7.3c contain a SQL injection vulnerability that allows attackers to inject malicious SQL statements through POST parameters 'idtyp' and 'idgremium'. Attackers can exploit this vulnerability by crafting specially formed POST requests to the /vorlagen/ endpoint, enabling โ€ฆ

๐Ÿ“… Published: Feb. 18, 2026, 9:55 p.m. ๐Ÿ”„ Last Modified: Feb. 19, 2026, 8:09 p.m.

8.7

CVSS4.0

CVE-2019-25358 - FileOptimizer 14.00.2524 - Denial of Service

FileOptimizer 14.00.2524 contains a denial of service vulnerability that allows attackers to crash the application by manipulating the FileOptimizer32.ini configuration file. Attackers can overwrite the TempDirectory parameter with a 5000-character buffer to cause the application to crash when openโ€ฆ

๐Ÿ“… Published: Feb. 18, 2026, 9:55 p.m. ๐Ÿ”„ Last Modified: Feb. 19, 2026, 8:10 p.m.

8.4

CVSS4.0

CVE-2019-25357 - Control Center PRO 6.2.9 - Local Stack Based BufferOverflow

Control Center PRO 6.2.9 contains a stack-based buffer overflow vulnerability in the user creation module's username field that allows attackers to overwrite Structured Exception Handler (SEH). Attackers can craft a malicious payload exceeding 664 bytes to inject shellcode and potentially execute aโ€ฆ

๐Ÿ“… Published: Feb. 18, 2026, 9:55 p.m. ๐Ÿ”„ Last Modified: March 5, 2026, 1:26 a.m.

5.1

CVSS4.0

CVE-2019-25356 - Bematech Printer MP-4200 TH Cross-Site Scripting

Bematech (formerly Logic Controls, now Elgin) MP-4200 TH printer contains a cross-site scripting vulnerability in the admin configuration page. Attackers can inject malicious scripts via crafted POST requests with malformed 'admin' and 'person' parameters, allowing execution of arbitrary JavaScriptโ€ฆ

๐Ÿ“… Published: Feb. 18, 2026, 9:55 p.m. ๐Ÿ”„ Last Modified: Feb. 19, 2026, 8:10 p.m.

8.7

CVSS4.0

CVE-2019-25355 - Genivia gSOAP 2.8 - 'gSOAP' Path Traversal

gSOAP 2.8 contains a directory traversal vulnerability that allows unauthenticated attackers to access system files by manipulating HTTP path traversal techniques. Attackers can retrieve sensitive files like /etc/passwd by sending crafted GET requests with multiple '../' directory traversal sequencโ€ฆ

๐Ÿ“… Published: Feb. 18, 2026, 9:55 p.m. ๐Ÿ”„ Last Modified: March 5, 2026, 1:26 a.m.
Total resulsts: 343975
Page 1064 of 34,398
ยซ previous page ยป next page
Filters