Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2019-25711

SpotFTP Password Recover 2.4.2 contains a denial of service vulnerability that allows local attackers to crash the application by supplying an oversized buffer in the Name field during registration. Attackers can generate a 256-byte payload, paste it into the Name input field, and trigger a crash when submitting the registration code.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 5.3%
CVSS Severity
CVSS v3 Score 6.2
Products affected by CVE-2019-25711
  • Nsasoft » Spotftp » Version: 2.4.2
    cpe:2.3:a:nsasoft:spotftp:2.4.2


Contact Us

Shodan ® - All rights reserved