CVE-2019-25365
CRITICALChaosPro 2.0 - Buffer Overflow
Title source: llmDescription
ChaosPro 2.0 contains a buffer overflow vulnerability in the configuration file path handling that allows attackers to execute arbitrary code by overwriting the Structured Exception Handler. Attackers can craft a malicious configuration file with carefully constructed payload to overwrite memory and gain remote code execution on vulnerable Windows XP systems.
Exploits (1)
Scores
CVSS v3
9.8
EPSS
0.0023
EPSS Percentile
45.5%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Classification
CWE
CWE-121
Status
draft
Timeline
Published
Feb 18, 2026
Tracked Since
Feb 19, 2026