CVE-2019-25365
Severity CVSS v4.0:
HIGH
Type:
CWE-121
Stack-based Buffer Overflow
Publication date:
18/02/2026
Last modified:
19/02/2026
Description
ChaosPro 2.0 contains a buffer overflow vulnerability in the configuration file path handling that allows attackers to execute arbitrary code by overwriting the Structured Exception Handler. Attackers can craft a malicious configuration file with carefully constructed payload to overwrite memory and gain remote code execution on vulnerable Windows XP systems.
Impact
Base Score 4.0
8.40
Severity 4.0
HIGH
Base Score 3.x
9.80
Severity 3.x
CRITICAL



