VYPR
High severity8.4NVD Advisory· Published Mar 26, 2026· Updated Mar 31, 2026

CVE-2018-25219

CVE-2018-25219

Description

PassFab Excel Password Recovery 8.3.1 contains a structured exception handling buffer overflow vulnerability that allows local attackers to execute arbitrary code by supplying a malicious payload in the registration code field. Attackers can craft a buffer overflow payload with a pop-pop-ret gadget and shellcode that triggers code execution when pasted into the Licensed E-mail and Registration Code field during the registration process.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

2
  • cpe:2.3:a:passfab:excel_password_recovery:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:passfab:excel_password_recovery:*:*:*:*:*:*:*:*range: <=8.3.1
    • (no CPE)range: = 8.3.1

Patches

Vulnerability mechanics

References

4

News mentions

0

No linked articles in our index yet.