FileWrangler <= 5.30 suffers from a stack-based buffer overflow vulnerability when parsing directory listings from an FTP server. A malicious server can send an overlong folder name in response to a LIST command, triggering memory corruption during client-side rendering. Exploitation requires passive user interaction—simply connecting to the server—without further input. Successful exploitation may lead to arbitrary code execution.
CVSS
No CVSS.
References
Configurations
No configuration.
History
20 Aug 2025, 16:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-08-20 16:15
Updated : 2025-08-20 16:15
NVD link : CVE-2010-20045
Mitre link : CVE-2010-20045
CVE.ORG link : CVE-2010-20045
JSON object : View
Products Affected
No product.
CWE
CWE-121
Stack-based Buffer Overflow