CVE Feed

    Dashboard / CVE / CVE-2019-25626

    CVE-2019-25626

    River Past Cam Do 3.7.6 contains a local buffer overflow vulnerability in the activation code input field that allows local attackers to execute arbitrary code by supplying a malicious activation code string. Attackers can craft a buffer containing 608 bytes of junk data followed by shellcode and SEH chain overwrite values to trigger code execution when the activation dialog processes the input.

    Published:Mar 24, 2026
    Last Modified:Apr 27, 2026
    EPS:Mar 24, 2026
    EPSS Score:0.00019
    CVSS Score:8.4

    Affected Products

    Vendor
    Flexhex
    Product
    River Past Cam Do
    Vendor
    River Past Cam Do Project
    Product
    River Past Cam Do

    Common Attack Pattern Enumeration and Classification (CAPEC)

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High