AIDA64 Extreme 5.99.4900 contains a structured exception handling buffer overflow vulnerability that allows local attackers to execute arbitrary code by supplying malicious input through the email preferences and report wizard interfaces. Attackers can inject crafted payloads into the Display name field and Load from file parameter to trigger the overflow and execute shellcode with application privileges.
Metrics
Affected Vendors & Products
References
History
Wed, 25 Mar 2026 12:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Aida64
Aida64 aida64 Extreme |
|
| Vendors & Products |
Aida64
Aida64 aida64 Extreme |
Tue, 24 Mar 2026 13:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 24 Mar 2026 11:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | AIDA64 Extreme 5.99.4900 contains a structured exception handling buffer overflow vulnerability that allows local attackers to execute arbitrary code by supplying malicious input through the email preferences and report wizard interfaces. Attackers can inject crafted payloads into the Display name field and Load from file parameter to trigger the overflow and execute shellcode with application privileges. | |
| Title | AIDA64 Extreme 5.99.4900 SEH Buffer Overflow via EggHunter | |
| Weaknesses | CWE-787 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published: 2026-03-24T11:27:07.254Z
Updated: 2026-03-24T13:08:55.859Z
Reserved: 2026-03-24T11:02:35.099Z
Link: CVE-2019-25633
Updated: 2026-03-24T13:08:48.238Z
Status : Awaiting Analysis
Published: 2026-03-24T12:16:03.797
Modified: 2026-03-24T15:53:48.067
Link: CVE-2019-25633
No data.