CVE-2005-2961
HIGH 7.5EPSS 8.6%
Buffer overflow in the get_string_ahref function for ProZilla 1.3.7.4 and possibly earlier, with the -ftpsearch option enabled, allows remote servers to execute arbitrary code via a search response with a crafted string in the HREF field of an <A> tag.
- CVSS v2.0
- 7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P - EPSS
- 8.62% chance of exploitation in the next 30 days, 95th percentile
- Published
- 2005-10-05
- Updated
- 2024-08-07