VYPR
Unrated severityNVD Advisory· Published Feb 11, 2026· Updated Feb 12, 2026

SpotIM 2.2 - 'Name' Denial Of Service

CVE-2020-37211

Description

SpotIM 2.2 contains a denial of service vulnerability that allows attackers to crash the application by inputting a large buffer in the registration name field. Attackers can generate a 1000-character payload and paste it into the 'Name' field to trigger an application crash.

Affected products

2
  • SpotIE/SpotIEllm-fuzzy
    Range: =2.2
  • Nsasoft/Nsauditor SpotIMv5
    Range: 2.2

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

3

News mentions

0

No linked articles in our index yet.