{"id":"CVE-2020-14498","title":"HMS Industrial Networks AB eCatcher all versions prior to 6.5.5 is vulnerable to a stack-based buffer overflow, which may allow an attacker to remotely execute arbitrary code.","summary":"HMS Industrial Networks AB eCatcher all versions prior to 6.5.5 is vulnerable to a stack-based buffer overflow, which may allow an attacker to remotely execute arbitrary code.","severity":"critical","cvss":9.6,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H","cwe":["CWE-121","CWE-787"],"vendor":"hms-networks","product":"ecatcher","affected":["ecatcher < 6.5.5"],"patched":["ecatcher 6.5.5"],"published":"2020-08-26","updated":"2026-09-10","sourceUpdated":"2026-09-10T18:17:53.100","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2020-14498","references":[{"url":"https://www.cisa.gov/news-events/ics-advisories/icsa-20-210-03","label":"ics-cert@hq.dhs.gov"},{"url":"https://www.hms-networks.com/cybersecurity/security-advisories","label":"ics-cert@hq.dhs.gov"},{"url":"https://us-cert.cisa.gov/ics/advisories/icsa-20-210-03","label":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://www.hms-networks.com/cybersecurity/security-advisories","label":"af854a3a-2127-422b-91ae-364da2661108"}],"tags":["nvd","cve.org"],"ingestedAt":"2026-09-14T12:32:43.146Z","epss":0.03984,"epssPercentile":0.90065,"slug":"CVE-2020-14498","body":"## Overview\n\nHMS Industrial Networks AB eCatcher all versions prior to 6.5.5 is vulnerable to a stack-based buffer overflow, which may allow an attacker to remotely execute arbitrary code.\n\n## Affected\n\n- `ecatcher < 6.5.5`\n\n## Remediation\n\nUpgrade past the affected range:\n\n- `ecatcher 6.5.5`","depth":"midnight","depthScore":54,"depthScoreParts":{"impact":52.8,"likelihood":0.8,"exploitation":0,"ransomware":0},"changes":[]}