Structured Exception Handling Buffer Overflow in AIDA64 Extreme by FinalWire
CVE-2019-25633
Key Information:
- Vendor
Aida64
- Status
- Vendor
- CVE Published:
- 24 March 2026
Badges
What is CVE-2019-25633?
AIDA64 Extreme version 5.99.4900 is vulnerable to a structured exception handling buffer overflow, allowing local attackers to execute arbitrary code. This vulnerability can be exploited by providing malicious input through the application's email preferences and report wizard. Attackers can inject crafted payloads into the Display name field and the Load from file parameter, leading to an overflow condition that facilitates the execution of shellcode with the privileges of the application.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
AIDA64 Extreme 5.99.4900 #
Exploit Proof of Concept (PoC)
PoC code is written by security researchers to demonstrate the vulnerability can be exploited. PoC code is also a key component for weaponization which could lead to ransomware.
References
CVSS V4
Timeline
- ๐ก
Public PoC available
- ๐พ
Exploit known to exist
Vulnerability published
Vulnerability Reserved
