CVE-2020-37140: AIDA64

Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.

Everest, later referred to as AIDA64, 5.50.2100 contains a denial of service vulnerability that allows local attackers to crash the application by manipulating file open functionality. Attackers can generate a 450-byte buffer of repeated characters and paste it into the file open dialog to trigger an application crash.

Affected products

  • AIDA64 AIDA64: version 5.50.2100 only

Published 2026-02-05. Last modified 2026-06-17.