CVE-2019-25475: Top-Password SQL Server Password Changer Denial Of Service Exploit
Medium severity, CVSS 6.2. EPSS: 0.1% chance of exploitation in the next 30 days.
SQL Server Password Changer 1.90 contains a buffer overflow vulnerability that allows local attackers to crash the application by supplying an oversized payload. Attackers can inject 6000 bytes of data into the User Name and Registration Code field to trigger a denial of service condition.
Affected products
- Top-Password SQL Server Password Changer Denial Of Service Exploit: version 1.90 only
Published 2026-03-11. Last modified 2026-06-17.