CVE-2019-25552Disclosure(cewe / photo_show)

LOWCVSS 7.5 · HIGH

Signal is active with 2 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

CEWE PHOTO SHOW 6.4.3 contains a denial of service vulnerability that allows attackers to crash the application by submitting an excessively long buffer to the password field. Attackers can paste a large string of repeated characters into the password input during the upload process to trigger an application crash.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-836

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

NONE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • photo_show

Threat summary

  • 2 mentions across 1 observed day

What's happening

  • Technical details provided in 1 signal
  • Disclosure: 2 classified signals
  • 2 total mentions across 1 day

Affected systems

Vendors
Products
photo_show

1 version affected across 1 product

Deep dive

Activity timeline2 mentions / 1d
01122Mentions · 2026-03-22: 2Technical Details · 2026-03-22: 103-22
Signal classification1 categories
Disclosure
2100.0%
Referenced assets2 URLs
Full discourse2 posts
  • CVE@CVEnew
    Disclosure

    CVE-2019-25552 CEWE PHOTO SHOW 6.4.3 contains a denial of service vulnerability that allows attackers to crash the application by submitting an excessively long buffer to the passwo… https://www.cve.org/CVERecord?id=CVE-2019-25552

    Post summary

    The content announces a denial-of-service vulnerability in CEWE PHOTO SHOW 6.4.3, providing basic technical details but no PoC, exploitation evidence, or mitigation information.

    0000072
    56.8K followersView on X
  • RedPacket Security@RedPacketSec
    Disclosure

    CVE Alert: CVE-2019-25552 - Cewe-Photoworld - CEWE PHOTO SHOW - https://www.redpacketsecurity.com/cve-alert-cve-2019-25552-cewe-photoworld-cewe-photo-show/ #OSINT #ThreatIntel #CyberSecurity #cve-2019-25552 #cewe-photoworld #cewe-photo-show

    Post summary

    An alert announcing CVE‑2019‑25552 for CEWE Photo World Photo Show, with no additional exploitation or patch information provided in the text.

    0000046
    3.6K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appcewephoto_show6.4.3--

Explore more