CVE-2019-25434

Severity CVSS v4.0:
MEDIUM
Type:
CWE-121 Stack-based Buffer Overflow
Publication date:
20/02/2026
Last modified:
05/03/2026

Description

SpotAuditor 5.3.1.0 contains a denial of service vulnerability that allows unauthenticated attackers to crash the application by submitting excessive data in the registration name field. Attackers can enter a large string of characters (5000 bytes or more) in the name field during registration to trigger an unhandled exception that crashes the application.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:nsasoft:spotauditor:*:*:*:*:*:*:*:* 5.3.1.0 (including)