CVE-2020-37042: Frigate Professional 3.36.0.9 - 'Find Computer' Local Buffer Overflow
Frigate Professional 3.36.0.9 contains a local buffer overflow vulnerability in the 'Find Computer' feature that allows attackers to execute arbitrary code by overflowing the computer name input field. Attackers can craft a malicious payload that triggers a buffer overflow, enabling code execution and launching calculator as a proof of concept.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2020-37042?
CVE-2020-37042 has a high severity due to the potential for arbitrary code execution through a buffer overflow.
How do I fix CVE-2020-37042?
To address CVE-2020-37042, update Frigate Professional to the latest version that patches this vulnerability.
What is the impact of CVE-2020-37042 on affected systems?
CVE-2020-37042 can allow attackers to execute arbitrary code on the affected systems, posing a significant threat to system integrity.
Which versions of Frigate Professional are affected by CVE-2020-37042?
CVE-2020-37042 specifically affects Frigate Professional version 3.36.0.9.
Is there a known exploit for CVE-2020-37042?
Yes, there is a known exploit for CVE-2020-37042 that leverages the buffer overflow in the 'Find Computer' feature.