vendor:
RaidenFTPD
by:
Andre Nogueira
9.8
CVSS
CRITICAL
Buffer Overflow
119
CWE
Product Name: RaidenFTPD
Affected Version From: 2.4.4005
Affected Version To: 2.4.4005
Patch Exists: NO
Related CWE: CVE-2023-XXXX
CPE: cpe:2.3:a:raidenftpd:raidenftpd:2.4.4005:*:*:*:*:*:*:*
Platforms Tested: Microsoft Windows 10 Build 19045
2023
RaidenFTPD 2.4.4005 – Buffer Overflow (SEH)
The RaidenFTPD 2.4.4005 software is vulnerable to a buffer overflow vulnerability. By sending a specially crafted payload, an attacker can trigger a stack-based buffer overflow, potentially allowing for remote code execution.
Mitigation:
Update to the latest version of RaidenFTPD software to fix the buffer overflow vulnerability. Avoid exposing the FTP server directly to the internet.