CVE-2020-37075
Severity CVSS v4.0:
HIGH
Type:
CWE-120
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
Publication date:
03/02/2026
Last modified:
03/02/2026
Description
LanSend 3.2 contains a buffer overflow vulnerability in the Add Computers Wizard file import functionality that allows remote attackers to execute arbitrary code. Attackers can craft a malicious payload file to trigger a structured exception handler (SEH) overwrite and execute shellcode when importing computers from a file.
Impact
Base Score 4.0
8.40
Severity 4.0
HIGH
Base Score 3.x
9.80
Severity 3.x
CRITICAL



