DefaultFuction Customer-Relationship-Management-In-C-Project Customer Search gets stack-based overflow
10Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackcvss 5.3
exploitation probability
—
observed exploitation
nono source reports it
A weakness has been identified in DefaultFuction Customer-Relationship-Management-In-C-Project 2.0. Impacted is the function gets of the component Customer Search Module. This manipulation causes stack-based buffer overflow. The attack may be initiated remotely. The exploit has been made available to the public and could be used for attacks. The project confirms, that "it’s being processed".
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P
Affected products
DefaultFuction · Customer-Relationship-Management-In-C-ProjectReferences
https://github.com/DefaultFuction/Customer-Relationship-Management-In-C-Project/https://github.com/DefaultFuction/Customer-Relationship-Management-In-C-Project/issues/1https://vuldb.com/cve/CVE-2026-19933https://vuldb.com/submit/872649https://vuldb.com/vuln/390704https://vuldb.com/vuln/390704/cti