CVE-2019-19660

MEDIUM

Rumpus FTP Server 8.2.9.1 - CSRF

Title source: llm
STIX 2.1

Description

A CSRF vulnerability exists in the Web File Manager's Network Setting functionality of Rumpus FTP Server 8.2.9.1. By exploiting it, an attacker can manipulate the SMTP setting and other network settings via RAPR/NetworkSettingsSet.html.

References (2)

Core 2

Scores

CVSS v3 6.5
EPSS 0.0016
EPSS Percentile 36.6%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N

Details

CWE
CWE-352
Status published
Products (1)
maxum/rumpus 8.2.9.1
Published Feb 10, 2020
Tracked Since Feb 18, 2026