CVE-2020-37049: Winfrigate Frigate 3 Professional

High severity, CVSS 8.4. EPSS: 0.2% chance of exploitation in the next 30 days.

Frigate 3.36.0.9 contains a local buffer overflow vulnerability in the Command Line input field that allows attackers to execute arbitrary code. Attackers can craft a malicious payload to overflow the buffer, bypass DEP, and execute commands like launching calc.exe through a specially crafted input sequence.

Affected products

  • Winfrigate Frigate 3 Professional: up to and including 3.36.0.9

Published 2026-01-30. Last modified 2026-06-17.