CVE-2020-37190
HIGHTop Password Firefox Password Recovery <2.8 - DoS
Title source: llmDescription
Top Password Firefox Password Recovery 2.8 contains a denial of service vulnerability that allows attackers to crash the application by overflowing input fields. Attackers can trigger the vulnerability by inserting 5000 characters into the User Name or Registration Code input fields.
Exploits (1)
Scores
CVSS v3
7.5
EPSS
0.0003
EPSS Percentile
9.5%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
CISA SSVC
Vulnrichment
Exploitation
poc
Automatable
yes
Technical Impact
partial
Details
CWE
CWE-120
Status
published
Published
Feb 11, 2026
Tracked Since
Feb 18, 2026