Vendor Homepageproduct
http://www.webgateinc.com/wgi/eng/products/list.php?ec_idx1=P610 CVE-2019-25357
HIGH
Control Center PRO 6.2.9 - Local Stack Based BufferOverflow
Record summary
CVE-2019-25357 has a selected CVSS score of 8.4 (high); EIP currently links 1 catalogued exploit.
Description
Control Center PRO 6.2.9 contains a stack-based buffer overflow vulnerability in the user creation module's username field that allows attackers to overwrite Structured Exception Handler (SEH). Attackers can craft a malicious payload exceeding 664 bytes to inject shellcode and potentially execute arbitrary code on vulnerable Windows systems.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
CISA SSVC decision
ExploitationPoC
AutomatableNo
Technical impactTotal
CISA Coordinator · SSVC 2.0.3 · Evaluated Feb 19, 2026 · Source: CVE List
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
Control Center PROBrowse WEBGATE Inc. / Control Center PRO | CVE List | 6.2.9 | affected |
Proofs of concept
1Catalogued exploits
ExploitDBControl Center PRO 6.2.9 - Local Stack Based Buffer Overflow (SEH)ExploitDB exploitby sasaga92Not analyzed1 file
References
5Software Download Pageproduct
http://www.webgateinc.com/wgi/eng/products/list.php?ec_idx1=P610&ptype=view&page=&p_idx=90&tab=download& nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2019-25357 ExploitDB-47645exploit
https://www.exploit-db.com/exploits/47645 VulnCheck Advisory: Control Center PRO 6.2.9 - Local Stack Based BufferOverflowThird-party advisory
https://www.vulncheck.com/advisories/control-center-pro-local-stack-based-bufferoverflow