Record summary

CVE-2019-16864 has a selected CVSS score of 8.8 (high); EIP currently links 1 curated repository PoC.

Description

CompleteFTPService.exe in the server in EnterpriseDT CompleteFTP before 12.1.4 allows Remote Code Execution by leveraging a Windows user account that has SSH access. The exec command is always run as SYSTEM.

Description source: CVE List

Exploitation context

Available material

Curated repository PoCs
1

Proofs of concept

1

Curated repository PoCs

GitHubCVE-2019-16864Curated repository PoCby RhinoSecurityLabsStars: 905Not analyzed3 files

Python · 7.6 KiB

GitHub

PoC details

References

3