Format string vulnerability in the SMBDirList function in dirlist.c in SmbFTPD 0.96 allows remote attackers to execute arbitrary code via format string specifiers in a directory name.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.281
EPSS Ranking 96.3%