Xlight FTP v3.9.3.2 was discovered to contain a stack-based buffer overflow which allows attackers to leak sensitive information via crafted code.
References
Link | Resource |
---|---|
https://i.imgur.com/aw6hZo2.png | Exploit Third Party Advisory |
https://streamable.com/gmqz5x | Exploit Third Party Advisory |
https://packetstormsecurity.com/files/166381/Xlight-FTP-3.9.3.2-Buffer-Overflow.html | Exploit Third Party Advisory VDB Entry |
https://i.imgur.com/jMURHQF.png | Exploit Third Party Advisory |
Configurations
Information
Published : 2022-05-23 07:16
Updated : 2022-06-03 07:20
NVD link : CVE-2022-28998
Mitre link : CVE-2022-28998
JSON object : View
CWE
CWE-787
Out-of-bounds Write
Products Affected
xlightftpd
- xlight_ftp