CVE-2020-37190

HIGH

Top Password Firefox Password Recovery <2.8 - DoS

Title source: llm

Description

Top Password Firefox Password Recovery 2.8 contains a denial of service vulnerability that allows attackers to crash the application by overflowing input fields. Attackers can trigger the vulnerability by inserting 5000 characters into the User Name or Registration Code input fields.

Exploits (1)

exploitdb WORKING POC
by antonio · pythondoswindows
https://www.exploit-db.com/exploits/47912

Scores

CVSS v3 7.5
EPSS 0.0003
EPSS Percentile 9.5%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

CISA SSVC

Vulnrichment
Exploitation poc
Automatable yes
Technical Impact partial

Details

CWE
CWE-120
Status published
Published Feb 11, 2026
Tracked Since Feb 18, 2026