CVE-2020-37159
Severity CVSS v4.0:
HIGH
Type:
CWE-121
Stack-based Buffer Overflow
Publication date:
07/02/2026
Last modified:
07/02/2026
Description
Parallaxis Cuckoo Clock 5.0 contains a buffer overflow vulnerability that allows attackers to execute arbitrary code by overwriting memory registers in the alarm scheduling feature. Attackers can craft a malicious payload exceeding 260 bytes to overwrite EIP and EBP, enabling shellcode execution with potential remote code execution.
Impact
Base Score 4.0
8.40
Severity 4.0
HIGH
Base Score 3.x
9.80
Severity 3.x
CRITICAL



