CVE-2019-25342

Severity CVSS v4.0:
HIGH
Type:
Unavailable / Other
Publication date:
12/02/2026
Last modified:
13/02/2026

Description

Centova Cast 3.2.12 contains a denial of service vulnerability that allows attackers to overwhelm the system by repeatedly calling the database export API endpoint. Attackers can trigger 100% CPU load by sending multiple concurrent requests to the /api.php endpoint with crafted parameters.