Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Fri, 17 Apr 2026 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Socusoft
Socusoft html5 Video Player |
|
| CPEs | cpe:2.3:a:socusoft:html5_video_player:1.2.5:*:*:*:*:*:*:* | |
| Vendors & Products |
Socusoft
Socusoft html5 Video Player |
Wed, 15 Apr 2026 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 13 Apr 2026 13:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Html5videoplayer
Html5videoplayer html5 Video Player |
|
| Vendors & Products |
Html5videoplayer
Html5videoplayer html5 Video Player |
Sun, 12 Apr 2026 12:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | HTML5 Video Player 1.2.5 contains a local buffer overflow vulnerability that allows attackers to execute arbitrary code by supplying an oversized key code string. Attackers can craft a malicious payload exceeding 997 bytes and paste it into the KEY CODE field in the Help Register dialog to trigger code execution and spawn a calculator process. | |
| Title | HTML5 Video Player 1.2.5 Local Buffer Overflow Non-SEH | |
| First Time appeared |
Bplugins
Bplugins html5 Video Player |
|
| Weaknesses | CWE-787 | |
| CPEs | cpe:2.3:a:bplugins:html5_video_player:1.2.5:*:*:*:*:*:*:* | |
| Vendors & Products |
Bplugins
Bplugins html5 Video Player |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-04-15T15:21:21.456Z
Reserved: 2026-04-05T15:31:44.950Z
Link: CVE-2019-25689
Updated: 2026-04-15T15:21:17.221Z
Status : Analyzed
Published: 2026-04-12T13:16:31.923
Modified: 2026-04-17T16:19:39.107
Link: CVE-2019-25689
No data.
OpenCVE Enrichment
Updated: 2026-04-13T12:56:01Z