CVE-2020-37010: Bearshareofficial Bearshare Lite

Critical severity, CVSS 9.8. EPSS: 0.5% chance of exploitation in the next 30 days.

BearShare Lite 5.2.5 contains a buffer overflow vulnerability in the Advanced Search keywords input that allows attackers to execute arbitrary code. Attackers can craft a specially designed payload to overwrite the EIP register and execute shellcode by pasting malicious content into the search keywords field.

Affected products

Published 2026-01-29. Last modified 2026-06-17.