CVE-2019-25336

Severity CVSS v4.0:
HIGH
Type:
CWE-121 Stack-based Buffer Overflow
Publication date:
12/02/2026
Last modified:
20/02/2026

Description

SpotAuditor 5.3.2 contains a local buffer overflow vulnerability in the Base64 Encrypted Password tool that allows attackers to execute arbitrary code by crafting a malicious payload. Attackers can generate a specially crafted Base64 encoded payload to trigger a Structured Exception Handler (SEH) overwrite and execute shellcode on the vulnerable system.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:nsasoft:spotauditor:5.3.2:*:*:*:*:*:*:*