CVE-2020-37128
MEDIUMZOC Terminal 7.25.5 - Denial of Service via Malicious REXX Script Processing
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2020-37128. PoCs published by chuyreds.
AI-analyzed exploit summary This PoC exploits a local denial-of-service vulnerability in ZOC Terminal 7.25.5 by generating a malformed script file with an excessive number of 'A' characters (20,000 bytes), causing the application to crash when the script is executed.
Description
ZOC Terminal 7.25.5 contains a script processing vulnerability that allows local attackers to crash the application by loading a maliciously crafted REXX script file. Attackers can generate an oversized script with 20,000 repeated characters to trigger an application crash and cause a denial of service.
Exploits (1)
This PoC exploits a local denial-of-service vulnerability in ZOC Terminal 7.25.5 by generating a malformed script file with an excessive number of 'A' characters (20,000 bytes), causing the application to crash when the script is executed.
References (3)
Scores
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H