CVE-2020-37206

ShareAlarmPro contains a denial of service vulnerability that allows attackers to crash the application by supplying an oversized registration key. Attackers can generate a 1000-character buffer payload to trigger an application crash when pasted into the registration key field.
Configurations

Configuration 1 (hide)

cpe:2.3:a:nsasoft:sharealarmpro:-:*:*:*:*:*:*:*

History

17 Jun 2026, 03:17

Type Values Removed Values Added
Summary
  • (es) ShareAlarmPro contiene una vulnerabilidad de denegación de servicio que permite a los atacantes bloquear la aplicación al proporcionar una clave de registro sobredimensionada. Los atacantes pueden generar una carga útil de búfer de 1000 caracteres para provocar un bloqueo de la aplicación cuando se pega en el campo de la clave de registro.

26 Feb 2026, 23:21

Type Values Removed Values Added
CPE cpe:2.3:a:nsasoft:sharealarmpro:-:*:*:*:*:*:*:*
First Time Nsasoft sharealarmpro
Nsasoft
References () http://www.nsauditor.com/ - () http://www.nsauditor.com/ - Product
References () https://www.exploit-db.com/exploits/47859 - () https://www.exploit-db.com/exploits/47859 - Exploit, VDB Entry
References () https://www.vulncheck.com/advisories/sharealarmpro-advanced-network-access-control-key-denial-of-service - () https://www.vulncheck.com/advisories/sharealarmpro-advanced-network-access-control-key-denial-of-service - Third Party Advisory

11 Feb 2026, 21:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-02-11 21:16

Updated : 2026-06-29 18:30


NVD link : CVE-2020-37206

Mitre link : CVE-2020-37206

CVE.ORG link : CVE-2020-37206


JSON object : View

Products Affected

nsasoft

  • sharealarmpro
CWE
CWE-120

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')