Home

Description

Security Point (Windows) of MaLion and MaLionCloud contains a stack-based buffer overflow vulnerability in processing HTTP headers. Receiving a specially crafted request from a remote unauthenticated attacker could lead to arbitrary code execution with SYSTEM privilege.

PUBLISHED Reserved 2025-11-18 | Published 2025-11-25 | Updated 2025-11-25 | Assigner jpcert




CRITICAL: 9.8CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

CRITICAL: 9.3CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N

Problem types

Stack-based buffer overflow

Product status

prior to Ver.7.1.1.9
affected

prior to Ver.7.2.0.1
affected

References

www.intercom.co.jp/information/2025/1125.html

jvn.jp/en/jp/JVN76298784/

cve.org (CVE-2025-62691)

nvd.nist.gov (CVE-2025-62691)

Download JSON