Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Mon, 20 Apr 2026 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:nsasoft:spotauditor:*:*:*:*:*:*:*:* |
Tue, 07 Apr 2026 00:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Nsauditor
Nsauditor spotauditor |
|
| Vendors & Products |
Nsauditor
Nsauditor spotauditor |
Mon, 06 Apr 2026 20:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Sun, 05 Apr 2026 20:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | SpotAuditor 3.6.7 contains a local buffer overflow vulnerability in the Base64 Password Decoder component that allows attackers to crash the application. Attackers can supply an oversized Base64 string through the decoder interface to trigger a denial of service condition. | |
| Title | SpotAuditor 3.6.7 Denial of Service Buffer Overflow | |
| First Time appeared |
Nsasoft
Nsasoft spotauditor |
|
| Weaknesses | CWE-787 | |
| CPEs | cpe:2.3:a:nsasoft:spotauditor:3.6.7:*:*:*:*:*:*:* | |
| Vendors & Products |
Nsasoft
Nsasoft spotauditor |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-04-06T18:02:53.635Z
Reserved: 2026-04-05T13:04:28.354Z
Link: CVE-2019-25666
Updated: 2026-04-06T17:59:16.394Z
Status : Analyzed
Published: 2026-04-05T21:16:43.907
Modified: 2026-04-20T18:05:57.330
Link: CVE-2019-25666
No data.
OpenCVE Enrichment
Updated: 2026-04-06T21:48:42Z