CVE-2019-25563
Severity CVSS v4.0:
MEDIUM
Type:
CWE-226
Sensitive Information in Resource Not Removed Before Reuse
Publication date:
21/03/2026
Last modified:
24/03/2026
Description
PCHelpWareV2 1.0.0.5 contains a denial of service vulnerability that allows local attackers to crash the application by supplying a malformed image file. Attackers can trigger the vulnerability through the Create SC feature by selecting a crafted BMP file with an oversized buffer, causing the application to crash.
Impact
Base Score 4.0
6.90
Severity 4.0
MEDIUM
Base Score 3.x
6.20
Severity 3.x
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:uvnc:pchelpwarev2:1.0.0.5:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page



