VYPR
Unrated severityNVD Advisory· Published Feb 11, 2026· Updated Feb 12, 2026

SpotMSN 2.4.6 - 'Name' Denial of Service

CVE-2020-37212

Description

SpotMSN 2.4.6 contains a denial of service vulnerability in the registration name input field that allows attackers to crash the application. Attackers can generate a 1000-character payload and paste it into the 'Name' field to trigger an application crash.

Affected products

2
  • SpotMSN/SpotMSNllm-create
    Range: = 2.4.6
  • Nsasoft/Nsauditor SpotMSNv5
    Range: 2.4.6

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

3

News mentions

0

No linked articles in our index yet.