VULNERABILITY INTELLIGENCE
CVE-2019-25478
CVSS score8.7 HIGH
EPSS probability0.50%
CISA KEVNot currently listed
Published2026-03-11
Last modified2026-06-17
CVSS vectorCVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N
Description
GetGo Download Manager 6.2.2.3300 contains a buffer overflow vulnerability that allows remote attackers to cause denial of service by sending HTTP responses with excessively long headers. Attackers can craft malicious HTTP responses with oversized header values to crash the application and make it unavailable.
Weakness classification
- CWE-787: Out-of-bounds Write