CVE-2016-20050: McAfee Netschedscan

Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.

NetSchedScan 1.0 contains a buffer overflow vulnerability in the scan Hostname/IP field that allows local attackers to crash the application by supplying an oversized input string. Attackers can paste a crafted payload containing 388 bytes of data followed by 4 bytes of EIP overwrite into the Hostname/IP field to trigger a denial of service condition.

Affected products

  • McAfee Netschedscan: version 1.0 only

Published 2026-04-04. Last modified 2026-07-20.