Rumpus FTP Server OS Command Injection Vulnerability

Vulnerability

A command injection vulnerability has been identified in Rumpus FTP Server version 9.0.12. This issue arises from improper handling of special elements in operating system commands, allowing for potential command injection attacks.

Impact

Exploitation of this vulnerability could lead to arbitrary command execution on the server where Rumpus FTP Server is running.

Added: Nov 17, 2025, 6:26 PM
Updated: Nov 17, 2025, 6:26 PM

Vulnerability Rating

Custom Algorithm
spread
1.0
impact
10.0
exploitability
4.7
remediation
0.0
relevance
1.1
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.