nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2020-37190 CVE-2020-37190
MEDIUM
Top Password Firefox Password Recovery 2.8 - Denial of Service
Record summary
CVE-2020-37190 has a selected CVSS score of 4.6 (medium); EIP currently links 1 catalogued exploit.
Description
Top Password Firefox Password Recovery 2.8 contains a denial of service vulnerability that allows attackers to crash the application by overflowing input fields. Attackers can trigger the vulnerability by inserting 5000 characters into the User Name or Registration Code input fields.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
CISA SSVC decision
ExploitationPoC
AutomatableYes
Technical impactPartial
CISA Coordinator · SSVC 2.0.3 · Evaluated Feb 12, 2026 · Source: CVE List
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
Top Password Firefox Password RecoveryBrowse Top Password Software / Top Password Firefox Password Recovery | CVE List | 2.8 | affected |
Proofs of concept
1Catalogued exploits
ExploitDBTop Password Firefox Password Recovery 2.8 - Denial of Service (PoC)ExploitDB exploitby antonioNot analyzed1 file
References
4ExploitDB-47912exploit
https://www.exploit-db.com/exploits/47912 Vendor Homepageproduct
https://www.top-password.com/ VulnCheck Advisory: Top Password Firefox Password Recovery 2.8 - Denial of ServiceThird-party advisory
https://www.vulncheck.com/advisories/top-password-firefox-password-recovery-denial-of-service