PT-2026-27367 · Finalwire · Aida64 Extreme

Published

2026-03-24

·

Updated

2026-03-24

·

CVE-2019-25633

CVSS v3.1

8.4

High

VectorAV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions AIDA64 Extreme version 5.99.4900
Description The software contains a structured exception handling buffer overflow. Local attackers can execute arbitrary code by providing malicious input through the email preferences and report wizard interfaces. Attackers can inject crafted payloads into the Display name field and the Load from file parameter to trigger the overflow and execute shellcode with application privileges.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Memory Corruption

Weakness Enumeration

Related Identifiers

CVE-2019-25633

Affected Products

Aida64 Extreme