River Past Cam Do 3.7.6 contains a local buffer overflow vulnerability in the activation code input field that allows local attackers to execute arbitrary code by supplying a malicious activation code string. Attackers can craft a buffer containing 608 bytes of junk data followed by shellcode and SEH chain overwrite values to trigger code execution when the activation dialog processes the input.
References
Configurations
No configuration.
History
No history.
Information
Published : 2026-03-24 12:16
Updated : 2026-03-24 15:53
NVD link : CVE-2019-25626
Mitre link : CVE-2019-25626
CVE.ORG link : CVE-2019-25626
JSON object : View
Products Affected
No product.
CWE
CWE-434
Unrestricted Upload of File with Dangerous Type
