Frigate Professional 3.36.0.9 contains a local buffer overflow vulnerability in the 'Find Computer' feature that allows attackers to execute arbitrary code by overflowing the computer name input field. Attackers can craft a malicious payload that triggers a buffer overflow, enabling code execution and launching calculator as a proof of concept.
References
Configurations
No configuration.
History
No history.
Information
Published : 2026-01-30 23:16
Updated : 2026-02-03 16:44
NVD link : CVE-2020-37042
Mitre link : CVE-2020-37042
CVE.ORG link : CVE-2020-37042
JSON object : View
Products Affected
No product.
CWE
CWE-120
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
