Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2012-10023

Опубликовано: 05 авг. 2025
Источник: nvd
CVSS3: 9.8
EPSS Высокий

Описание

A stack-based buffer overflow vulnerability exists in FreeFloat FTP Server version 1.0.0. The server fails to properly validate input passed to the USER command, allowing remote attackers to overwrite memory and potentially execute arbitrary code. The flaw is triggered by sending an overly long username string, which overflows the buffer allocated for user authentication.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:freefloat:freefloat_ftp_server:1.0:*:*:*:*:*:*:*

EPSS

Процентиль: 99%
0.70595
Высокий

9.8 Critical

CVSS3

Дефекты

CWE-121

Связанные уязвимости

CVSS3: 9.8
github
6 месяцев назад

A stack-based buffer overflow vulnerability exists in FreeFloat FTP Server version 1.0.0. The server fails to properly validate input passed to the USER command, allowing remote attackers to overwrite memory and potentially execute arbitrary code. The flaw is triggered by sending an overly long username string, which overflows the buffer allocated for user authentication.

EPSS

Процентиль: 99%
0.70595
Высокий

9.8 Critical

CVSS3

Дефекты

CWE-121