Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
BulletProof FTP Server 2019.0.0.50 Storage-Path Denial of Service
Vulnerability Description
BulletProof FTP Server 2019.0.0.50 contains a denial of service vulnerability in the Storage-Path configuration parameter that allows local attackers to crash the application by supplying an excessively long string value. Attackers can enable the Override Storage-Path setting and paste a buffer of 500 bytes or more to trigger an application crash when saving the configuration.
CVSS Information
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Vulnerability Type
CWE-1282
Vulnerability Title
BulletProof FTP Server 安全漏洞
Vulnerability Description
BulletProof FTP Server是BulletProof公司的一个FTP服务器软件。 BulletProof FTP Server 2019.0.0.50版本存在安全漏洞,该漏洞源于Storage-Path配置参数存在拒绝服务,可能导致本地攻击者通过提供超长字符串值使应用程序崩溃。
CVSS Information
N/A
Vulnerability Type
N/A