Vulnerability Intelligence Report
CVE-2024-48208
pure-ftpd before 1.0.52 is vulnerable to Buffer Overflow. There is an out of bounds read in the domlsd() function of the ls.c file.
Nuclei Template
CVSS Base Score
8.6
HIGH
Exploitability:3.9
Impact Score:4.8
EPSS Probability:1.51%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
—
Authentication
—
Weaponization
—
SSVC Action
—
Weaknesses (CWE)
CWE-125 ↗CWE-125 Out-of-bounds Read
Affected Products & Versions
| Vendor | Product | Affected Versions |
|---|---|---|
| pureftpd | pure-ftpd | all |
References & Technical Advisories
No reference links found.
Threat Intelligence Signals
Identity & Timeline
| Status | PUBLISHED |
| Assigning Authority | MITRE Corporation · N/A · USA |
| Reserved | 2024-10-08T00:00:00 |
| Published | 2024-10-24T00:00:00 |
| Last Updated | 2024-10-28T18:27:39 |
Community Chatter & Buzz