PT-2022-19732 · Filezilla · Filezilla

Published

2022-06-07

·

Updated

2024-08-03

·

CVE-2022-29620

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions FileZilla version 3.59.0
Description The issue allows attackers to obtain cleartext passwords of connected SSH or FTP servers via a memory dump. It is noted that the vendor does not consider this a vulnerability.
Recommendations For FileZilla version 3.59.0, at the moment, there is no information about a newer version that contains a fix for this issue.

Exploit

Fix

Cleartext Storage of Sensitive Information

Weakness Enumeration

Related Identifiers

CVE-2022-29620

Affected Products

Filezilla