← Back to browse · API

CVE-2025-42599

Severity
CRITICAL
CVSS
9.8
EPSS
0.03215
Risk score
65.33
CISA KEV
Yes
PoC
No
Published
2025-04-18
Modified
2026-02-26
First seen
2026-08-07
Aliases
EUVD-2025-11849, GHSA-WVVM-3J2M-8RJ3
Products
QUALITIA CO., LTD.:Active! mail 6 BuildInfo: 6.60.05008561 and earlier, Qualitia:Active! Mail
Sources
euvd EUVD-2025-11849
cisa.gov CVE-2025-42599

Description

Active! mail 6 BuildInfo: 6.60.05008561 and earlier contains a stack-based buffer overflow vulnerability. Receiving a specially crafted request created and sent by a remote unauthenticated attacker may lead to arbitrary code execution and/or a denial-of-service (DoS) condition.

References