PT-2025-29138 · Unknown · Easy File Sharing Ftp Server
Bl4Ck H4Ck3R
·
Published
2025-07-10
·
Updated
2025-07-11
·
CVE-2025-34096
CVSS v2.0
10
Critical
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions:
Easy File Sharing HTTP Server version 7.2
Description:
A stack-based buffer overflow vulnerability exists in the application. The flaw is triggered when a crafted POST request is sent to the
/sendemail.ghp endpoint containing an overly long Email parameter. The application fails to properly validate the length of this field, resulting in a memory corruption condition. An unauthenticated remote attacker can exploit this to execute arbitrary code with the privileges of the server process.Recommendations:
Easy File Sharing HTTP Server version 7.2: As a temporary workaround, consider disabling the
/sendemail.ghp endpoint until a patch is available.Exploit
Fix
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Easy File Sharing Ftp Server