CVE Feed

    Dashboard / CVE / CVE-2017-6465

    CVE-2017-6465

    Remote Code Execution was discovered in FTPShell Client 6.53. By default, the client sends a PWD command to the FTP server it is connecting to; however, it doesn't check the response's length, leading to a buffer overflow situation.

    Published:Mar 10, 2017
    Last Modified:Apr 20, 2025
    EPS:Mar 10, 2017
    EPSS Score:0.27482
    CVSS Score:9.8

    Affected Products

    Vendor
    Ftpshell
    Product
    Ftpshell Client

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High