Stack-Based Buffer Overflow Vulnerability in Xlight FTP by Xlight
CVE-2022-28998

8.1HIGH

Key Information:

Vendor

Xlightftpd

Vendor
CVE Published:
23 May 2022

What is CVE-2022-28998?

A stack-based buffer overflow vulnerability found in Xlight FTP v3.9.3.2 enables attackers to execute crafted code that can lead to leaking sensitive information. This exploit poses significant risks, especially when malicious actors gain unauthorized access to critical data. System administrators should implement immediate security measures to mitigate potential threats.

References

CVSS V3.1

Score:
8.1
Severity:
HIGH
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.