CNNVD-202512-616 Information

CNNVD ID

CNNVD-202512-616

CVE-2020-36880

  • CNNVD Published: 2025-12-05

Description (Chinese)

Flexsense DiskBoss是美国Flexsense公司的一个磁盘管理工具。 Flexsense DiskBoss 7.7.14版本存在缓冲区错误漏洞,该漏洞源于Reports and Data Directory字段存在本地缓冲区溢出,可能导致执行任意代码。

Description (English)

Flexsense DiskBoss is a disk management tool for the United States company Flexsense. Version 7.7.14 of Flexsense DiskBoss contains an error loophole in the buffer zone, which stems from the presence of a local buffer zone in the Reports and Data Directory fields, which may lead to the implementation of any code.

Hazard Level

Medium

Vulnerability Type

缓冲区错误

Affected Vendor

Flexsense

Published

2025-12-05

Last Modified

2026-02-24

References

https://www.diskboss.com/ https://www.exploit-db.com/exploits/48689 https://www.vulncheck.com/advisories/flexsense-diskboss-reports-and-data-directory-buffer-overflow https://access.redhat.com/security/cve/cve-2020-36880

Patch

https://www.diskboss.com/downloads.html

Share on: