Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-42m5-3r2p-wr92

Опубликовано: 07 нояб. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 9.3

Описание

Monsta FTP versions 2.11 and earlier contain a vulnerability that allows unauthenticated arbitrary file uploads. This flaw enables attackers to execute arbitrary code by uploading a specially crafted file from a malicious (S)FTP server.

Monsta FTP versions 2.11 and earlier contain a vulnerability that allows unauthenticated arbitrary file uploads. This flaw enables attackers to execute arbitrary code by uploading a specially crafted file from a malicious (S)FTP server.

EPSS

Процентиль: 98%
0.60331
Средний

9.3 Critical

CVSS4

Дефекты

CWE-434

Связанные уязвимости

CVSS3: 9.8
nvd
3 месяца назад

Monsta FTP versions 2.11 and earlier contain a vulnerability that allows unauthenticated arbitrary file uploads. This flaw enables attackers to execute arbitrary code by uploading a specially crafted file from a malicious (S)FTP server.

EPSS

Процентиль: 98%
0.60331
Средний

9.3 Critical

CVSS4

Дефекты

CWE-434