VULNERABILITY INTELLIGENCE

CVE-2019-25478

CVSS score8.7 HIGH
EPSS probability0.50%
CISA KEVNot currently listed
Published2026-03-11
Last modified2026-06-17
CVSS vectorCVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N

Description

GetGo Download Manager 6.2.2.3300 contains a buffer overflow vulnerability that allows remote attackers to cause denial of service by sending HTTP responses with excessively long headers. Attackers can craft malicious HTTP responses with oversized header values to crash the application and make it unavailable.

Weakness classification

  • CWE-787: Out-of-bounds Write

Primary references