CVE-2020-37142
Severity CVSS v4.0:
HIGH
Type:
CWE-121
Stack-based Buffer Overflow
Publication date:
05/02/2026
Last modified:
05/02/2026
Description
10-Strike Network Inventory Explorer 8.54 contains a structured exception handler buffer overflow vulnerability that allows attackers to execute arbitrary code by overwriting SEH records. Attackers can craft a malicious payload targeting the 'Computer' parameter during the 'Add' function to trigger remote code execution.
Impact
Base Score 4.0
8.40
Severity 4.0
HIGH
Base Score 3.x
8.40
Severity 3.x
HIGH
References to Advisories, Solutions, and Tools
- https://web.archive.org/web/20210105222137/https://whitecr0wz.github.io/posts/Strike-Network-Inventory-Explorer-Structered-Exception-Handling-Overwrite/
- https://www.10-strike.com/
- https://www.exploit-db.com/exploits/48253
- https://www.vulncheck.com/advisories/strike-network-inventory-explorer-add-local-buffer-overflow-seh



