Exploitation Summary
EIP tracks 1 public exploit for CVE-2020-37122. PoCs published by Ismael Nava.
AI-analyzed exploit summary This exploit generates a buffer overflow payload to trigger a Denial of Service (DoS) in SpotFTP-FTP Password Recover 2.4.8 by overwriting a registration code field with a large string of 'Z' characters. The script creates a file containing the payload, which is then manually input into the target application.
Description
SpotFTP-FTP Password Recover 2.4.8 contains a denial of service vulnerability that allows attackers to crash the application by generating a large buffer overflow. Attackers can create a text file with 1000 'Z' characters and input it as a registration code to trigger the application crash.
Exploits (1)
This exploit generates a buffer overflow payload to trigger a Denial of Service (DoS) in SpotFTP-FTP Password Recover 2.4.8 by overwriting a registration code field with a large string of 'Z' characters. The script creates a file containing the payload, which is then manually input into the target application.
References (4)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H