CVE-2020-37109: Asc Applied Software Consultants Asc Timetables

High severity, CVSS 7.5. EPSS: 0.4% chance of exploitation in the next 30 days.

aSc TimeTables 2020.11.4 contains a denial of service vulnerability that allows attackers to crash the application by overwriting the Subject title field with a large buffer. Attackers can generate a 1000-character buffer and paste it into the Subject title to trigger an application crash and potential instability.

Affected products

Published 2026-02-07. Last modified 2026-06-17.