{"api_version":"1","generated_at":"2026-07-23T12:50:04+00:00","cve":"CVE-2019-19513","urls":{"html":"https://cve.report/CVE-2019-19513","api":"https://cve.report/api/cve/CVE-2019-19513.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2019-19513","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2019-19513"},"summary":{"title":"CVE-2019-19513","description":"The BASSMIDI plugin 2.4.12.1 for Un4seen BASS Audio Library on Windows is prone to an out of bounds write vulnerability. An attacker may exploit this to execute code on the target machine. A failure in exploitation leads to a denial of service.","state":"PUBLIC","assigner":"cve@mitre.org","published_at":"2020-10-16 13:15:00","updated_at":"2020-10-27 19:30:00"},"problem_types":["CWE-787"],"metrics":[],"references":[{"url":"http://www.un4seen.com/","name":"http://www.un4seen.com/","refsource":"MISC","tags":["Vendor Advisory"],"title":"Un4seen Developments - 2MIDI / BASS / MID2XM / MO3 / XM-EXE / XMPlay","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"https://github.com/staufnic/CVE/tree/master/CVE-2019-19513","name":"https://github.com/staufnic/CVE/tree/master/CVE-2019-19513","refsource":"MISC","tags":["Exploit","Third Party Advisory"],"title":"CVE/CVE-2019-19513 at master · staufnic/CVE · GitHub","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2019-19513","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2019-19513","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2019","cve_id":"19513","vulnerable":"-1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"microsoft","cpe5":"windows","cpe6":"-","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2019","cve_id":"19513","vulnerable":"0","versionEndIncluding":"1","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"microsoft","cpe5":"windows","cpe6":"-","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2019","cve_id":"19513","vulnerable":"1","versionEndIncluding":"2.4.12.1","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"un4seen","cpe5":"bassmidi","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"bass","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2019-19513","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"The BASSMIDI plugin 2.4.12.1 for Un4seen BASS Audio Library on Windows is prone to an out of bounds write vulnerability. An attacker may exploit this to execute code on the target machine. A failure in exploitation leads to a denial of service."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"url":"http://www.un4seen.com/","refsource":"MISC","name":"http://www.un4seen.com/"},{"refsource":"MISC","name":"https://github.com/staufnic/CVE/tree/master/CVE-2019-19513","url":"https://github.com/staufnic/CVE/tree/master/CVE-2019-19513"}]}},"nvd":{"publishedDate":"2020-10-16 13:15:00","lastModifiedDate":"2020-10-27 19:30:00","problem_types":["CWE-787"],"metrics":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":9.8,"baseSeverity":"CRITICAL"},"exploitabilityScore":3.9,"impactScore":5.9},"baseMetricV2":{"cvssV2":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE","baseScore":10},"severity":"HIGH","exploitabilityScore":10,"impactScore":10,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}},"configurations":{"CVE_data_version":"4.0","nodes":[{"operator":"AND","children":[{"operator":"OR","children":[],"cpe_match":[{"vulnerable":true,"cpe23Uri":"cpe:2.3:a:un4seen:bassmidi:*:*:*:*:*:bass:*:*","versionEndIncluding":"2.4.12.1","cpe_name":[]}]},{"operator":"OR","children":[],"cpe_match":[{"vulnerable":false,"cpe23Uri":"cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*","cpe_name":[]}]}],"cpe_match":[]}]}},"legacy_mitre":{"record":{"CveYear":"2019","CveId":"19513","Ordinal":"161321","Title":"CVE-2019-19513","CVE":"CVE-2019-19513","Year":"2019"},"notes":[{"CveYear":"2019","CveId":"19513","Ordinal":"1","NoteData":"The BASSMIDI plugin 2.4.12.1 for Un4seen BASS Audio Library on Windows is prone to an out of bounds write vulnerability. An attacker may exploit this to execute code on the target machine. A failure in exploitation leads to a denial of service.","Type":"Description","Title":null},{"CveYear":"2019","CveId":"19513","Ordinal":"2","NoteData":"2020-10-16","Type":"Other","Title":"Published"},{"CveYear":"2019","CveId":"19513","Ordinal":"3","NoteData":"2020-10-16","Type":"Other","Title":"Modified"}]}}}