Record summary

CVE-2019-25629 has a selected CVSS score of 8.6 (high); EIP currently links 1 catalogued exploit.

Description

AIDA64 Extreme 5.99.4900 contains a structured exception handler buffer overflow vulnerability in the logging functionality that allows local attackers to execute arbitrary code by supplying a malicious CSV log file path. Attackers can inject shellcode through the Hardware Monitoring logging preferences to overflow the buffer and trigger code execution when the application processes the log file path.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1

CISA SSVC decision

ExploitationPoC
AutomatableNo
Technical impactTotal

CISA Coordinator · SSVC 2.0.3 · Evaluated Mar 24, 2026 · Source: CVE List

Affected products and versions

1
ProductSourceVersion rangeStatus
CVE List5.99.4900 #affected

Proofs of concept

1

Catalogued exploits

ExploitDBAIDA64 Extreme 5.99.4900 - 'Logging' SEH Buffer OverflowExploitDB exploitby Peyman ForouzanNot analyzed1 file
ExploitDB

PoC details

References

5