Lucene search

K
githubGitHub Advisory DatabaseGHSA-5F3F-PG2C-CXCV
HistoryMay 01, 2022 - 6:45 p.m.

Improper Input Validation in pyftpdlib

2022-05-0118:45:57
CWE-20
GitHub Advisory Database
github.com
10
pyftpdlib
input validation
ftpserver
denial of service
remote attackers
long command
version 0.2.0

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:N/I:N/A:P

EPSS

0.006

Percentile

79.3%

FTPServer.py in pyftpdlib before 0.2.0 allows remote attackers to cause a denial of service via a long command.

Affected configurations

Vulners
Node
g.rodolapyftpdlibRange<0.2.0

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:N/I:N/A:P

EPSS

0.006

Percentile

79.3%

Related for GHSA-5F3F-PG2C-CXCV