---
id: CVE-2019-25633
title: AIDA64 Extreme 5.99.4900 SEH Buffer Overflow via EggHunter
summary: >-
  AIDA64 Extreme 5.99.4900 contains a structured exception handling buffer
  overflow vulnerability that allows local attackers to execute arbitrary code
  by supplying malicious input through the email preferences and report wizard
  interfaces…
severity: high
cvss: 8.4
cvssVector: 'CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H'
cvssSource: cna
cwe:
  - CWE-787
vendor: Aida64
product: AIDA64 Extreme
affected:
  - >-
    extreme
    5.99.4900                                                                              
    #
ssvc:
  exploitation: poc
  automatable: 'no'
  technicalImpact: total
  timestamp: '2026-03-24T13:08:36.883538Z'
exploitAvailable: true
published: '2026-03-24'
updated: '2026-10-01'
sourceUpdated: '2026-10-01T15:19:22.205Z'
source: CVEORG
sourceUrl: 'https://www.cve.org/CVERecord?id=CVE-2019-25633'
references:
  - url: 'https://www.exploit-db.com/exploits/46636'
    label: ExploitDB-46636
  - url: 'https://www.aida64.com'
    label: Official Product Homepage
  - url: 'http://download.aida64.com/aida64extreme599.exe'
    label: Product Reference
  - url: >-
      https://www.vulncheck.com/advisories/aida64-extreme-seh-buffer-overflow-via-egghunter
    label: >-
      VulnCheck Advisory: AIDA64 Extreme 5.99.4900 SEH Buffer Overflow via
      EggHunter
tags:
  - cve.org
  - exploit-available
epss: 0.00257
epssPercentile: 0.15715
ingestedAt: '2026-10-01T15:48:17.885Z'
---

## Overview

AIDA64 Extreme 5.99.4900 contains a structured exception handling buffer overflow vulnerability that allows local attackers to execute arbitrary code by supplying malicious input through the email preferences and report wizard interfaces. Attackers can inject crafted payloads into the Display name field and Load from file parameter to trigger the overflow and execute shellcode with application privileges.

## Affected

- `extreme 5.99.4900                                                                               #`

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
