Buffer Overflow Vulnerability in BlueAuditor by AyeTech
CVE-2019-25712
Key Information:
- Vendor
Nsauditor
- Status
- Vendor
- CVE Published:
- 12 April 2026
Badges
What is CVE-2019-25712?
BlueAuditor 1.7.2.0 features a critical security flaw characterized by a buffer overflow in the registration key field. This vulnerability can be exploited by local attackers who input an excessively large key value, specifically a 256-byte buffer filled with repeated characters. Successfully exploiting this weakness can lead to a denial of service, where the application becomes unresponsive, effectively crashing during the registration process. This highlights the need for immediate attention and remediation to safeguard application integrity and availability.
Affected Version(s)
BlueAuditor 1.7.2.0
Exploit Proof of Concept (PoC)
PoC code is written by security researchers to demonstrate the vulnerability can be exploited. PoC code is also a key component for weaponization which could lead to ransomware.
References
CVSS V4
Timeline
- ๐ก
Public PoC available
- ๐พ
Exploit known to exist
Vulnerability published
Vulnerability Reserved
