Lizardsystems Vulnerabilities and Affected Products
Explore source-attributed vulnerabilities associated with Lizardsystems products.
Products
- LanSpy2 vulnerabilities
- Terminal Services Manager2 vulnerabilities
- LanSend1 vulnerability
- Remote Desktop Audit1 vulnerability
- Remote Process Explorer1 vulnerability
| Vulnerability | Title and context | CVSS | EPSS | PoCs | Signals | STIX action |
|---|---|---|---|---|---|---|
CVE-2018-25268HIGH | LanSpy 2.0.1.159 Local Buffer Overflow via Scan FieldLanSpy 2.0.1.159 contains a local buffer overflow vulnerability that allows attackers to overwrite the instruction pointer by supplying oversized input to the scan field. Attackers can craft a payload with 688 bytes of padding followed by 4 bytes of controlled data to crash the application or potentially achieve code execution. CWE-787Apr 22, 2026 | CVSS8.6v4.0 | EPSS0.201% | PoCs1 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2018-25265HIGH | LanSpy 2.0.1.159 Local Buffer OverflowLanSpy 2.0.1.159 contains a local buffer overflow vulnerability in the scan section that allows local attackers to execute arbitrary code by exploiting structured exception handling mechanisms. Attackers can craft malicious payloads using egghunter techniques to locate and execute shellcode, triggering code execution through SEH chain manipulation and controlled jumps. CWE-787Apr 22, 2026 | CVSS8.6v4.0 | EPSS0.205% | PoCs1 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2018-25259HIGH | Terminal Services Manager 3.1 Buffer Overflow SEHTerminal Services Manager 3.1 contains a stack-based buffer overflow vulnerability in the computer names field that allows local attackers to execute arbitrary code by triggering structured exception handling. Attackers can craft a malicious input file with shellcode and jump instructions that overwrite the SEH handler pointer to execute calc.exe or other payloads when imported through the add computers wizard. CWE-306Apr 22, 2026 | CVSS8.6v4.0 | EPSS0.189% | PoCs1 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2019-25661MEDIUM | Remote Process Explorer 1.0.0.16 Local Buffer Overflow DoSRemote Process Explorer 1.0.0.16 contains a local buffer overflow vulnerability that allows attackers to cause a denial of service by sending a crafted payload to the Add Computer dialog. Attackers can paste a malicious string into the computer name textbox and trigger a crash by connecting to the added computer, overwriting the SEH chain and corrupting exception handlers. CWE-787Apr 5, 2026 | CVSS6.9v4.0 | EPSS0.146% | PoCs1 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2019-25545MEDIUM | Terminal Services Manager 3.2.1 Local Buffer Overflow Denial of ServiceTerminal Services Manager 3.2.1 contains a local buffer overflow vulnerability that allows attackers to crash the application by supplying an excessively long string in the computer name field. Attackers can input a 5000-byte buffer of data into the 'Computer name or IP address' field during computer addition, causing a denial of service when the server entry is accessed. CWE-787Mar 21, 2026 | CVSS6.9v4.0 | EPSS0.191% | PoCs1 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2020-37075HIGH | LanSend 3.2 - Buffer Overflow (SEH)LanSend 3.2 contains a buffer overflow vulnerability in the Add Computers Wizard file import functionality that allows remote attackers to execute arbitrary code. Attackers can craft a malicious payload file to trigger a structured exception handler (SEH) overwrite and execute shellcode when importing computers from a file. CWE-120Feb 3, 2026 | CVSS8.4v4.0 | EPSS0.453% | PoCs1 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2020-37074HIGH | Remote Desktop Audit 2.3.0.157 - Buffer Overflow (SEH)Remote Desktop Audit 2.3.0.157 contains a buffer overflow vulnerability that allows attackers to execute arbitrary code during the Add Computers Wizard file import process. Attackers can craft a malicious payload file to trigger a structured exception handler (SEH) bypass and execute shellcode when importing computer lists. CWE-120Feb 3, 2026 | CVSS8.4v4.0 | EPSS0.337% | PoCs1 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |