PoC Index

CVE-2010-2632

HIGH 7.8EPSS 35.0%

Unspecified vulnerability in the FTP Server in Oracle Solaris 8, 9, 10, and 11 Express allows remote attackers to affect availability. NOTE: the previous information was obtained from the January 2011 CPU. Oracle has not commented on claims from a reliable researcher that this is an issue in the glob implementation in libc that allows remote authenticated users to cause a denial of service (CPU and memory consumption) via crafted glob expressions that do not match any pathnames.

CVSS v2.0
7.8 HIGHAV:N/AC:L/Au:N/C:N/I:N/A:C
EPSS
35.01% chance of exploitation in the next 30 days, 98th percentile
Published
2011-01-19
Updated
2024-08-07

ExploitDB entries (1)

References

Related