CVE-2020-37130

Nsauditor 3.2.0.0 contains a denial of service vulnerability in the registration name input field that allows attackers to crash the application. Attackers can create a malicious payload of 1000 bytes of repeated characters to trigger an application crash when pasted into the registration name field.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:nsasoft:nsauditor:*:*:*:*:*:*:*:*

History

01 May 2026, 21:01

Type Values Removed Values Added
Summary
  • (es) Nsauditor 3.2.0.0 contiene una vulnerabilidad de denegación de servicio en el campo de entrada del nombre de registro que permite a los atacantes bloquear la aplicación. Los atacantes pueden crear una carga útil maliciosa de 1000 bytes de caracteres repetidos para provocar un bloqueo de la aplicación cuando se pega en el campo del nombre de registro.

09 Feb 2026, 22:08

Type Values Removed Values Added
References () http://www.nsauditor.com - () http://www.nsauditor.com - Product
References () https://www.exploit-db.com/exploits/48286 - () https://www.exploit-db.com/exploits/48286 - Exploit, Third Party Advisory, VDB Entry
References () https://www.vulncheck.com/advisories/nsauditor-name-denial-of-service - () https://www.vulncheck.com/advisories/nsauditor-name-denial-of-service - Third Party Advisory
CPE cpe:2.3:a:nsasoft:nsauditor:*:*:*:*:*:*:*:*
First Time Nsasoft
Nsasoft nsauditor

05 Feb 2026, 17:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-02-05 17:16

Updated : 2026-05-01 21:01


NVD link : CVE-2020-37130

Mitre link : CVE-2020-37130

CVE.ORG link : CVE-2020-37130


JSON object : View

Products Affected

nsasoft

  • nsauditor
CWE
CWE-120

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')