A heap-based buffer overflow vulnerability in NetSupport Manager 14.x versions prior to 14.12.0000 allows a remote, unauthenticated attacker to cause a denial of service (DoS) or execute arbitrary code.
Advisories
Source ID Title
EUVD EUVD EUVD-2025-26268 A heap-based buffer overflow vulnerability in NetSupport ManagerĀ 14.x versions prior to 14.12.0000 allows a remote, unauthenticated attacker to cause a denial of service (DoS) or potentially result in arbitrary code execution.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Tue, 04 Nov 2025 01:15:00 +0900

Type Values Removed Values Added
Description A heap-based buffer overflow vulnerability in NetSupport ManagerĀ 14.x versions prior to 14.12.0000 allows a remote, unauthenticated attacker to cause a denial of service (DoS) or potentially result in arbitrary code execution. A heap-based buffer overflow vulnerability in NetSupport Manager 14.x versions prior to 14.12.0000 allows a remote, unauthenticated attacker to cause a denial of service (DoS) or execute arbitrary code.
Metrics cvssV4_0

{'score': 8.8, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:H/VA:H/SC:N/SI:N/SA:N'}

cvssV4_0

{'score': 9.3, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N'}


Wed, 03 Sep 2025 05:15:00 +0900

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Wed, 03 Sep 2025 00:30:00 +0900

Type Values Removed Values Added
First Time appeared Netsupport
Netsupport netsupport Manager Agent
Netsupport netsupport Manager Client
Netsupportsoftware
Netsupportsoftware netsupport Manager
Vendors & Products Netsupport
Netsupport netsupport Manager Agent
Netsupport netsupport Manager Client
Netsupportsoftware
Netsupportsoftware netsupport Manager

Sat, 30 Aug 2025 22:00:00 +0900


Sat, 30 Aug 2025 08:45:00 +0900

Type Values Removed Values Added
Description A heap-based buffer overflow vulnerability in NetSupport ManagerĀ 14.x versions prior to 14.12.0000 allows a remote, unauthenticated attacker to cause a denial of service (DoS) or potentially result in arbitrary code execution.
Title NetSupport Manager < 14.12.0000 Heap-Based Buffer Overflow
Weaknesses CWE-122
References
Metrics cvssV4_0

{'score': 8.8, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:H/VA:H/SC:N/SI:N/SA:N'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: VulnCheck

Published:

Updated: 2025-11-03T16:11:21.827Z

Reserved: 2025-04-15T19:15:22.566Z

Link: CVE-2025-34164

cve-icon Vulnrichment

Updated: 2025-09-02T19:24:55.673Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2025-08-30T00:15:30.770

Modified: 2025-11-03T16:15:34.277

Link: CVE-2025-34164

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2025-09-03T00:23:30Z

Weaknesses