← back
CVE-2020-37170

TapinRadio 2.12.3 - 'address' Denial of Service

CVSS 6.7 MEDIUMEPSS 0.2%CWE-120
Vexday Risk Score
13Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 6.7EPSS 0.2%KEV nãoPoC Nuclei Metasploit Patch
Lifecycle
06 Feb 2026Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
TapinRadio 2.12.3 contains a denial of service vulnerability in the application proxy address configuration that allows local attackers to crash the application. Attackers can overwrite the address field with 3000 bytes of arbitrary data to trigger an application crash and prevent normal program functionality.
CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N
Affected products
Raimersoft · TapinRadio

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →