Vulnerability Description
ZOC Terminal 7.25.5 contains a denial of service vulnerability in the private key file input field that allows attackers to crash the application. Attackers can overwrite the private key file input with a 2000-byte buffer, causing the application to become unresponsive when attempting to create SSH key files.
CVSS Score
HIGH
Related Weaknesses (CWE)
References
- https://www.emtec.com
- https://www.exploit-db.com/exploits/48292
- https://www.vulncheck.com/advisories/zoc-terminal-private-key-file-denial-of-ser
FAQ
What is CVE-2020-37136?
CVE-2020-37136 is a vulnerability with a CVSS score of 7.5 (HIGH). ZOC Terminal 7.25.5 contains a denial of service vulnerability in the private key file input field that allows attackers to crash the application. Attackers can overwrite the private key file input wi...
How severe is CVE-2020-37136?
CVE-2020-37136 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2020-37136?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.