Globalscape CuteFTP
cpe:2.3:a:fortra:cuteftp:*:*:*:*:*:*:*
- <= 5.0.4
A buffer overflow vulnerability has been identified in CuteFTP version 5.0 XP. This vulnerability allows local attackers to execute arbitrary code by injecting malicious payloads into the Site Manager label field. Attackers can create payloads longer than 520 bytes, which overwrite the return address and execute shellcode when the associated shortcut is launched.
Exploitation of this vulnerability allows for arbitrary code execution on the affected system.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.