CVE-2024-48208
HIGH 8.6EPSS 1.6%
pure-ftpd before 1.0.52 is vulnerable to Buffer Overflow. There is an out of bounds read in the domlsd() function of the ls.c file.
- CVSS v3.1
- 8.6 HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:H - EPSS
- 1.57% chance of exploitation in the next 30 days, 74th percentile
- Nuclei
- high · CWE-125
- Published
- 2024-10-24
- Updated
- 2024-10-28
Proof-of-concept exploits (2)
- jedisct1/pure-ftpd/pull/176
- rohilchaudhry/CVE-2024-482087★ · 2024-11-05