Описание
Core FTP Server 1.2 before build 515 allows remote authenticated users to obtain sensitive information (password for the previous user) via a USER command with a specific length, possibly related to an out-of-bounds read.
Ссылки
- Vendor Advisory
- Exploit
- Exploit
- Vendor Advisory
- Vendor Advisory
- Exploit
- Exploit
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:coreftp:core_ftp:1.2:*:*:*:*:*:*:*
EPSS
Процентиль: 56%
0.00337
Низкий
4 Medium
CVSS2
Дефекты
CWE-119
Связанные уязвимости
github
больше 3 лет назад
Core FTP Server 1.2 before build 515 allows remote authenticated users to obtain sensitive information (password for the previous user) via a USER command with a specific length, possibly related to an out-of-bounds read.
EPSS
Процентиль: 56%
0.00337
Низкий
4 Medium
CVSS2
Дефекты
CWE-119