CVE-2019-25628 PUBLISHED

Download Accelerator Plus DAP 10.0.6.0 SEH Buffer Overflow

Assigner: VulnCheck
Reserved: 24.03.2026 Published: 24.03.2026 Updated: 24.03.2026

Download Accelerator Plus DAP 10.0.6.0 contains a structured exception handler buffer overflow vulnerability that allows remote attackers to execute arbitrary code by crafting malicious URLs. Attackers can create specially crafted URLs with overflowing buffer data that overwrites SEH pointers and executes embedded shellcode when imported through the application's web page import functionality.

Metrics

CVSS Vector: CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
CVSS Score: 9.3

Product Status

Vendor Speedbit
Product Download Accelerator Plus DAP
Versions
  • Version 10.0.6.0 # is affected

Credits

  • Peyman Forouzan # finder

References

Problem Types

  • Out-of-bounds Write CWE