CVE-2020-28964: Tonec Internet Download Manager

Medium severity, CVSS 6.7. EPSS: 0.4% chance of exploitation in the next 30 days.

Internet Download Manager 6.37.11.1 was discovered to contain a stack buffer overflow in the Search function. This vulnerability allows attackers to escalate local process privileges via unspecified vectors.

Affected products

  • Tonec Internet Download Manager: version 6.37.11.1 only

Published 2021-10-22. Last modified 2026-06-17.