7.5
CVE-2020-37206
- EPSS 0.45%
- Veröffentlicht 11.02.2026 20:37:25
- Zuletzt bearbeitet 26.02.2026 23:21:44
- Quelle disclosure@vulncheck.com
- CVE-Watchlists
- Unerledigt
ShareAlarmPro Advanced Network Access Control - 'Key' Denial of Service
ShareAlarmPro contains a denial of service vulnerability that allows attackers to crash the application by supplying an oversized registration key. Attackers can generate a 1000-character buffer payload to trigger an application crash when pasted into the registration key field.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Nsasoft ≫ Sharealarmpro Version-
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.45% | 0.357 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| disclosure@vulncheck.com | 7.5 | 3.9 | 3.6 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
|
| disclosure@vulncheck.com | 4.6 | 0 | 0 |
CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
|
CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer, leading to a buffer overflow.
http://www.nsauditor.com/
https://www.exploit-db.com/exploits/47859
https://www.vulncheck.com/advisories/sharealarmpro-advanced-network-access-control-key-denial-of-service