7.5
CVE-2005-2961
- EPSS 8.62%
- Veröffentlicht 05.10.2005 19:02:00
- Zuletzt bearbeitet 16.06.2026 22:15:58
- Quelle security@debian.org
- CVE-Watchlists
- Unerledigt
Buffer overflow in the get_string_ahref function for ProZilla 1.3.7.4 and possibly earlier, with the -ftpsearch option enabled, allows remote servers to execute arbitrary code via a search response with a crafted string in the HREF field of an <A> tag.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Prozilla ≫ Prozilla Download Accelerator Version1.3.7.4
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 8.62% | 0.944 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|
http://secunia.com/advisories/17021/
http://secunia.com/advisories/17035
http://www.debian.org/security/2005/dsa-834
http://www.securityfocus.com/bid/14993
https://exchange.xforce.ibmcloud.com/vulnerabilities/22491