VYPR
Critical severity10.0NVD Advisory· Published Dec 22, 2020· Updated Jun 17, 2026

CVE-2020-25066

CVE-2020-25066

Description

A heap-based buffer overflow in the Treck HTTP Server component before 6.0.1.68 allows remote attackers to cause a denial of service (crash/reset) or to possibly execute arbitrary code.

Affected products

3
  • cpe:2.3:a:treck:tcp\/ip:*:*:*:*:*:*:*:*
    Range: <6.0.1.68
  • Treck/HTTP Servercpe-rescue2 versions
    (expand)+ 1 more
    • (no CPE)
    • (no CPE)range: <6.0.1.68

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.