vendor:
freeFTP
by:
Chet Manly
7.8
CVSS
HIGH
Buffer Overflow
120
CWE
Product Name: freeFTP
Affected Version From: 1.0.8
Affected Version To: 1.0.8
Patch Exists: YES
Related CWE: N/A
CPE: a:freeftp:freeftp:1.0.8
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: None
2019
freeFTP 1.0.8 – Remote Buffer Overflow
A buffer overflow vulnerability exists in freeFTP 1.0.8. An attacker can send a specially crafted FTP request with an overly long string, resulting in a buffer overflow and potentially allowing arbitrary code execution.
Mitigation:
Upgrade to the latest version of freeFTP 1.0.8