CVE-2020-37049
Severity CVSS v4.0:
HIGH
Type:
CWE-120
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
Publication date:
30/01/2026
Last modified:
30/01/2026
Description
Frigate 3.36.0.9 contains a local buffer overflow vulnerability in the Command Line input field that allows attackers to execute arbitrary code. Attackers can craft a malicious payload to overflow the buffer, bypass DEP, and execute commands like launching calc.exe through a specially crafted input sequence.
Impact
Base Score 4.0
8.40
Severity 4.0
HIGH
Base Score 3.x
8.40
Severity 3.x
HIGH



