CVE-2020-37178

HIGH

KeePass Password Safe <2.44 - DoS

Title source: llm

Description

KeePass Password Safe versions before 2.44 contain a denial of service vulnerability in the help system's HTML handling. Attackers can trigger the vulnerability by dragging and dropping malicious HTML files into the help area, potentially causing application instability or crash.

Exploits (1)

exploitdb WORKING POC
by Mustafa Emre Gül · textdosmultiple
https://www.exploit-db.com/exploits/47952

Scores

CVSS v3 7.5
EPSS 0.0003
EPSS Percentile 8.4%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Classification

CWE
CWE-94
Status draft

Timeline

Published Feb 11, 2026
Tracked Since Feb 18, 2026