Record summary

CVE-2020-37067 has a selected CVSS score of 7.1 (high); EIP currently links 1 catalogued exploit.

Description

Filetto 1.0 FTP server contains a denial of service vulnerability in the FEAT command processing that allows attackers to crash the service. Attackers can send an oversized FEAT command with 11,008 bytes of repeated characters to trigger a buffer overflow and terminate the FTP service.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1

CISA SSVC decision

ExploitationPoC
AutomatableYes
Technical impactTotal

CISA Coordinator · SSVC 2.0.3 · Evaluated Feb 4, 2026 · Source: CVE List

Affected products and versions

1
ProductSourceVersion rangeStatus
CVE List1.0affected

Proofs of concept

1

Catalogued exploits

ExploitDBFiletto 1.0 - 'FEAT' Denial of Service (PoC)ExploitDB exploitby Socket_0x03Not analyzed1 file
ExploitDB

PoC details

References

5