Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Confd0

#42254of 53,622
6.4Total CVSS
Vulnerabilities · 1
PT-2021-6846
6.4
2021-04-05
Python · Python · CVE-2021-4189
**Name of the Vulnerable Software and Affected Versions** Python (affected versions not specified) **Description** The issue is related to the FTP client library in Python, specifically in PASV (passive) mode, where the library trusts the host from the PASV response by default. This allows an attacker to set up a malicious FTP server that can trick FTP clients into connecting back to a given IP address and port, potentially leading to FTP client scanning ports. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.