PT-2019-15830 · Freeftpd · Freeftpd

Publicado

2019-12-03

·

Atualizado

2019-12-12

·

CVE-2019-19383

CVSS v3.1

8.8

Alta

VetorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions freeFTPd version 1.0.8
Description The issue is a Post-Authentication Buffer Overflow that can be triggered by a crafted SIZE command. This exploit is possible even when logging is disabled.
Recommendations For freeFTPd version 1.0.8, at the moment, there is no information about a newer version that contains a fix for this vulnerability. As a temporary workaround, consider restricting access to the SIZE command until a patch is available.

Exploit

Buffer Overflow

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2019-19383

Produtos afetados

Freeftpd