CVE-2020-37042: Winfrigate Frigate 3 Professional

High severity, CVSS 8.4. EPSS: 0.2% chance of exploitation in the next 30 days.

Frigate Professional 3.36.0.9 contains a local buffer overflow vulnerability in the 'Find Computer' feature that allows attackers to execute arbitrary code by overflowing the computer name input field. Attackers can craft a malicious payload that triggers a buffer overflow, enabling code execution and launching calculator as a proof of concept.

Affected products

  • Winfrigate Frigate 3 Professional: version 3.36.0.9 only

Published 2026-01-30. Last modified 2026-06-17.