CVE-2019-12806: Crosscert Unisign
High severity, CVSS 8.8. EPSS: 4.1% chance of exploitation in the next 30 days.
UniSign 2.0.4.0 and earlier version contains a stack-based buffer overflow vulnerability which can overwrite the stack with arbitrary data, due to a buffer overflow in a library. That leads remote attacker to execute arbitrary code via crafted https packets.
Affected products
- Crosscert Unisign: up to and including 2.0.4.0
Published 2019-08-13. Last modified 2026-06-17.