CVE-2020-37139

HIGH

Odin Secure FTP Expert 7.6.3 - Buffer Overflow

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2020-37139. PoCs published by Ivan Marmolejo.

AI-analyzed exploit summary This exploit demonstrates a local Denial of Service (DoS) vulnerability in Odin Secure FTP Expert 7.6.3 by overflowing a buffer with 108 'A' characters, causing the application to crash when pasted into the 'Site Info' fields.

Description

Odin Secure FTP Expert 7.6.3 contains a local denial of service vulnerability that allows attackers to crash the application by manipulating site information fields. Attackers can generate a buffer overflow by pasting 108 bytes of repeated characters into connection fields, causing the application to crash.

Exploits (1)

exploitdb WORKING POC
by Ivan Marmolejo · pythondoswindows
https://www.exploit-db.com/exploits/48262

This exploit demonstrates a local Denial of Service (DoS) vulnerability in Odin Secure FTP Expert 7.6.3 by overflowing a buffer with 108 'A' characters, causing the application to crash when pasted into the 'Site Info' fields.

Classification
Working Poc 90%
Attack Type
Dos
Complexity
Trivial
Reliability
Reliable
Target: Odin Secure FTP Expert 7.6.3
No auth needed
Prerequisites: Local access to the target system · Odin Secure FTP Expert 7.6.3 installed
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (3)

Core 3

Scores

CVSS v3 8.4
EPSS 0.0018
EPSS Percentile 8.0%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation poc
Automatable no
Technical Impact partial

Details

CWE
CWE-770
Status published
Products (1)
Odin-Secure-Ftp-Expert/Odin Secure FTP Expert 7.6.3
Published Feb 05, 2026
Tracked Since Feb 18, 2026