7.5
CVE-2005-2961
- EPSS 5.85%
- Veröffentlicht 05.10.2005 19:02:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
- Quelle security@debian.org
- CVE-Watchlists
- Unerledigt
Buffer overflow in the get_string_ahref function for ProZilla 1.3.7.4 and possibly earlier, with the -ftpsearch option enabled, allows remote servers to execute arbitrary code via a search response with a crafted string in the HREF field of an <A> tag.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Prozilla ≫ Prozilla Download Accelerator Version1.3.7.4
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 5.85% | 0.896 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|