CVE-2018-25307: Sysgauge Pro

High severity, CVSS 8.4. EPSS: 0.2% chance of exploitation in the next 30 days.

SysGauge Pro 4.6.12 contains a local buffer overflow vulnerability in the Register function that allows local attackers to overwrite the structured exception handler by supplying a crafted unlock key. Attackers can inject shellcode through the Unlock Key field during registration to execute arbitrary code with application privileges.

Affected products

  • Sysgauge Sysgauge Pro: version 4.6.12 only

Published 2026-04-29. Last modified 2026-06-17.