Lucene search

K
cveMitreCVE-2009-3484
HistorySep 30, 2009 - 3:30 p.m.

CVE-2009-3484

2009-09-3015:30:00
CWE-119
mitre
web.nvd.nist.gov
30
cve-2009-3484
core ftp
buffer overflow
arbitrary code execution
ftp server
site backup file

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

7.9

Confidence

High

EPSS

0.078

Percentile

94.3%

Stack-based buffer overflow in Core FTP 2.1 build 1612 allows user-assisted remote attackers to execute arbitrary code via a long hostname in an FTP server entry in a site backup file. NOTE: some of these details are obtained from third party information.

Affected configurations

Nvd
Node
coreftpcore_ftpMatch2.1
VendorProductVersionCPE
coreftpcore_ftp2.1cpe:2.3:a:coreftp:core_ftp:2.1:*:*:*:*:*:*:*

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

7.9

Confidence

High

EPSS

0.078

Percentile

94.3%

Related for CVE-2009-3484