CVE-2019-25357: Webgate Inc Control Center Pro

High severity, CVSS 8.4. EPSS: 0.2% chance of exploitation in the next 30 days.

Control Center PRO 6.2.9 contains a stack-based buffer overflow vulnerability in the user creation module's username field that allows attackers to overwrite Structured Exception Handler (SEH). Attackers can craft a malicious payload exceeding 664 bytes to inject shellcode and potentially execute arbitrary code on vulnerable Windows systems.

Affected products

Published 2026-02-18. Last modified 2026-06-17.