Record summary

CVE-2020-37190 has a selected CVSS score of 4.6 (medium); EIP currently links 1 catalogued exploit.

Description

Top Password Firefox Password Recovery 2.8 contains a denial of service vulnerability that allows attackers to crash the application by overflowing input fields. Attackers can trigger the vulnerability by inserting 5000 characters into the User Name or Registration Code input fields.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1

CISA SSVC decision

ExploitationPoC
AutomatableYes
Technical impactPartial

CISA Coordinator · SSVC 2.0.3 · Evaluated Feb 12, 2026 · Source: CVE List

Affected products and versions

1
ProductSourceVersion rangeStatus
CVE List2.8affected

Proofs of concept

1

Catalogued exploits

ExploitDBTop Password Firefox Password Recovery 2.8 - Denial of Service (PoC)ExploitDB exploitby antonioNot analyzed1 file
ExploitDB

PoC details

References

4