SQL Server Password Changer 1.90 contains a buffer overflow vulnerability that allows local attackers to crash the application by supplying an oversized payload. Attackers can inject 6000 bytes of data into the User Name and Registration Code field to trigger a denial of service condition.
Metrics
Affected Vendors & Products
References
History
Thu, 12 Mar 2026 10:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Top Password Software
Top Password Software sql Server Password Changer |
|
| Vendors & Products |
Top Password Software
Top Password Software sql Server Password Changer |
Wed, 11 Mar 2026 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 11 Mar 2026 18:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | SQL Server Password Changer 1.90 contains a buffer overflow vulnerability that allows local attackers to crash the application by supplying an oversized payload. Attackers can inject 6000 bytes of data into the User Name and Registration Code field to trigger a denial of service condition. | |
| Title | SQL Server Password Changer 1.90 Denial of Service Buffer Overflow | |
| Weaknesses | CWE-787 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published: 2026-03-11T18:23:17.055Z
Updated: 2026-03-11T19:31:02.062Z
Reserved: 2026-02-23T12:12:40.875Z
Link: CVE-2019-25475
Updated: 2026-03-11T19:22:48.821Z
Status : Received
Published: 2026-03-11T19:16:01.413
Modified: 2026-03-11T19:16:01.413
Link: CVE-2019-25475
No data.