CVE-2020-37010: Bearshareofficial Bearshare Lite
Critical severity, CVSS 9.8. EPSS: 0.5% chance of exploitation in the next 30 days.
BearShare Lite 5.2.5 contains a buffer overflow vulnerability in the Advanced Search keywords input that allows attackers to execute arbitrary code. Attackers can craft a specially designed payload to overwrite the EIP register and execute shellcode by pasting malicious content into the search keywords field.
Affected products
- Bearshareofficial Bearshare Lite: from 5.1.0, up to and including 5.2.5
Published 2026-01-29. Last modified 2026-06-17.