Vulnerabilities
Vulnerable Software
Netbsd:  >> Tnftpd  Security Vulnerabilities
ftpd before "NetBSD-ftpd 20230930" can leak information about the host filesystem before authentication via an MLSD or MLST command. tnftpd (the portable version of NetBSD ftpd) before 20231001 is also vulnerable.
CVSS Score
7.5
EPSS Score
0.005
Published
2023-10-05
The glob implementation in tnftpd (formerly lukemftpd), as used in Apple OS X before 10.11, allows remote attackers to cause a denial of service (memory consumption and daemon outage) via a STAT command containing a crafted pattern, as demonstrated by multiple instances of the {..,..,..}/* substring.
CVSS Score
5.0
EPSS Score
0.027
Published
2015-10-09


Contact Us

Shodan ® - All rights reserved