peter bassill · operator
$ cve CVE-2007-3492 JSON

CVE-2007-3492 EXPLOIT

6.8
MEDIUM · CVSS 2.0 · EPSS 2.7% (pctl 85)

Patch early

A public exploit exists.

Description

Conti FtpServer 1.0 allows remote authenticated users to cause a denial of service (daemon crash) via a certain string containing "//A:" in the argument to the LIST command.

Scoring

CVSS6.8 (MEDIUM, v2.0)
VectorAV:N/AC:L/Au:S/C:N/I:N/A:C
EPSS2.66% — more likely to be exploited than 85% of all CVEs
On CISA KEVno
Public exploityes
Published2007-06-29
Last modified2026-06-16

Affected (1)

VendorProduct
contiftpserver

Public exploits

SourceTitleDate
exploit-dbConti FTP Server 1.0 - Large String Denial of Service2007-06-27

References

→ the Explorer  ·  watch your stack  ·  NVD