Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-m264-rxp9-qm6v

Опубликовано: 10 мая 2023
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

An out-of-bounds read vulnerability exists in the PORT command parameter extraction functionality of Weston Embedded uC-FTPs v 1.98.00. A specially-crafted set of network packets can lead to denial of service. An attacker can send packets to trigger this vulnerability.This vulnerability occurs when no port argument is provided to the PORT command.

An out-of-bounds read vulnerability exists in the PORT command parameter extraction functionality of Weston Embedded uC-FTPs v 1.98.00. A specially-crafted set of network packets can lead to denial of service. An attacker can send packets to trigger this vulnerability.This vulnerability occurs when no port argument is provided to the PORT command.

EPSS

Процентиль: 43%
0.0021
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-125
CWE-823

Связанные уязвимости

CVSS3: 6.5
nvd
больше 2 лет назад

An out-of-bounds read vulnerability exists in the PORT command parameter extraction functionality of Weston Embedded uC-FTPs v 1.98.00. A specially-crafted set of network packets can lead to denial of service. An attacker can send packets to trigger this vulnerability.This vulnerability occurs when no port argument is provided to the `PORT` command.

EPSS

Процентиль: 43%
0.0021
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-125
CWE-823