Lucene search

K
cvelistMicrosoftCVELIST:CVE-2010-3972
HistoryDec 23, 2010 - 5:00 p.m.

CVE-2010-3972

2010-12-2317:00:00
microsoft
www.cve.org

8 High

AI Score

Confidence

Low

0.97 High

EPSS

Percentile

99.7%

Heap-based buffer overflow in the TELNET_STREAM_CONTEXT::OnSendData function in ftpsvc.dll in Microsoft FTP Service 7.0 and 7.5 for Internet Information Services (IIS) 7.0, and IIS 7.5, allows remote attackers to execute arbitrary code or cause a denial of service (daemon crash) via a crafted FTP command, aka “IIS FTP Service Heap Buffer Overrun Vulnerability.” NOTE: some of these details are obtained from third party information.

8 High

AI Score

Confidence

Low

0.97 High

EPSS

Percentile

99.7%