Vendor Homepageproduct
http://www.utillyty.eu/ CVE-2020-37067
HIGH
Filetto 1.0 - 'FEAT' Denial of Service
Record summary
CVE-2020-37067 has a selected CVSS score of 7.1 (high); EIP currently links 1 catalogued exploit.
Description
Filetto 1.0 FTP server contains a denial of service vulnerability in the FEAT command processing that allows attackers to crash the service. Attackers can send an oversized FEAT command with 11,008 bytes of repeated characters to trigger a buffer overflow and terminate the FTP service.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
CISA SSVC decision
ExploitationPoC
AutomatableYes
Technical impactTotal
CISA Coordinator · SSVC 2.0.3 · Evaluated Feb 4, 2026 · Source: CVE List
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
FilettoBrowse Utillyty / Filetto | CVE List | 1.0 | affected |
Proofs of concept
1Catalogued exploits
ExploitDBFiletto 1.0 - 'FEAT' Denial of Service (PoC)ExploitDB exploitby Socket_0x03Not analyzed1 file
References
5nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2020-37067 Software Project Repositoryproduct
https://sourceforge.net/projects/filetto ExploitDB-48503exploit
https://www.exploit-db.com/exploits/48503 VulnCheck Advisory: Filetto 1.0 - 'FEAT' Denial of ServiceThird-party advisory
https://www.vulncheck.com/advisories/filetto-feat-denial-of-service