CVE-2020-37109: Asc Applied Software Consultants Asc Timetables
High severity, CVSS 7.5. EPSS: 0.4% chance of exploitation in the next 30 days.
aSc TimeTables 2020.11.4 contains a denial of service vulnerability that allows attackers to crash the application by overwriting the Subject title field with a large buffer. Attackers can generate a 1000-character buffer and paste it into the Subject title to trigger an application crash and potential instability.
Affected products
- Asc Applied Software Consultants Asc Timetables: version 2020.11.4 only
Published 2026-02-07. Last modified 2026-06-17.