CVE-2019-12806: Crosscert Unisign

High severity, CVSS 8.8. EPSS: 4.1% chance of exploitation in the next 30 days.

UniSign 2.0.4.0 and earlier version contains a stack-based buffer overflow vulnerability which can overwrite the stack with arbitrary data, due to a buffer overflow in a library. That leads remote attacker to execute arbitrary code via crafted https packets.

Affected products

  • Crosscert Unisign: up to and including 2.0.4.0

Published 2019-08-13. Last modified 2026-06-17.