Buffer Overflow Vulnerability in FreeFloat FTP Server 1.0
CVE-2025-5109
Key Information:
- Vendor
Freefloat
- Status
- Vendor
- CVE Published:
- 23 May 2025
Badges
What is CVE-2025-5109?
A buffer overflow vulnerability has been identified in FreeFloat FTP Server 1.0 affecting the STATUS Command Handler component. This vulnerability allows remote attackers to execute malicious code by manipulating the STATUS command. Exploitation of this flaw could lead to significant security breaches, as it may enable unauthorized system access or data compromise. It is crucial for users of FreeFloat FTP Server to apply patches promptly and secure their installations against potential threats.
Affected Version(s)
FTP Server 1.0
Exploit Proof of Concept (PoC)
PoC code is written by security researchers to demonstrate the vulnerability can be exploited. PoC code is also a key component for weaponization which could lead to ransomware.
References
CVSS V4
Timeline
- 🟡
Public PoC available
- 👾
Exploit known to exist
Vulnerability published
Vulnerability Reserved