CVE-2020-37131

Severity CVSS v4.0:
MEDIUM
Type:
CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
Publication date:
05/02/2026
Last modified:
26/03/2026

Description

Nsauditor Product Key Explorer 4.2.2.0 contains a denial of service vulnerability that allows local attackers to crash the application by inputting a specially crafted registration key. Attackers can generate a payload of 1000 bytes of repeated characters and paste it into the 'Key' input field to trigger the application crash.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:nsasoft:product_key_explorer:4.2.2.0:*:*:*:*:*:*:*