CVE-2018-25366
HIGHCuteFTP 5.0 XP Buffer Overflow via Site Manager Label Field
Title source: cnaExploitation Summary
EIP tracks 1 public exploit for CVE-2018-25366. PoCs published by Matteo Malvica.
AI-analyzed exploit summary This exploit demonstrates a buffer overflow vulnerability in CuteFTP 5.0 by generating a malicious payload that triggers a shell bind on port 6666. The payload includes a NOP sled and shellcode generated via msfvenom, targeting a specific return address in ntdll.dll.
Description
CuteFTP 5.0 XP contains a buffer overflow vulnerability that allows local attackers to execute arbitrary code by injecting malicious payload into the Site Manager label field. Attackers can craft a payload exceeding 520 bytes that overwrites the return address and executes shellcode when a shortcut is created and launched.
Exploits (1)
This exploit demonstrates a buffer overflow vulnerability in CuteFTP 5.0 by generating a malicious payload that triggers a shell bind on port 6666. The payload includes a NOP sled and shellcode generated via msfvenom, targeting a specific return address in ntdll.dll.
References (3)
Scores
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H