Exploitation Summary
EIP tracks 1 public exploit for CVE-2024-0737. PoCs published by Fernando Mengali.
AI-analyzed exploit summary This exploit targets Xlight FTP 1.1 by sending a large payload (500 'A' characters) during the login process, causing a denial of service. The script uses Perl and the Net::FTP module to connect and exploit the vulnerability.
Description
A vulnerability classified as problematic was found in Xlightftpd Xlight FTP Server 1.1. This vulnerability affects unknown code of the component Login. The manipulation of the argument user leads to denial of service. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-251560.
Exploits (1)
This exploit targets Xlight FTP 1.1 by sending a large payload (500 'A' characters) during the login process, causing a denial of service. The script uses Perl and the Net::FTP module to connect and exploit the vulnerability.
References (3)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L