CVE-2020-37067
CRITICALFiletto 1.0 - Denial of Service via Oversized FEAT Command
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2020-37067. PoCs published by Socket_0x03.
AI-analyzed exploit summary This PoC exploits a denial-of-service vulnerability in Filetto 1.0 FTP server by sending an oversized 'FEAT' command. The exploit triggers a crash due to improper handling of the input buffer.
Description
Filetto 1.0 FTP server contains a denial of service vulnerability in the FEAT command processing that allows attackers to crash the service. Attackers can send an oversized FEAT command with 11,008 bytes of repeated characters to trigger a buffer overflow and terminate the FTP service.
Exploits (1)
This PoC exploits a denial-of-service vulnerability in Filetto 1.0 FTP server by sending an oversized 'FEAT' command. The exploit triggers a crash due to improper handling of the input buffer.
References (4)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H