CNNVD-202507-2026 Information

CNNVD ID

CNNVD-202507-2026

CVE-2025-34107

  • CNNVD Published: 2025-07-15

Description (Chinese)

LabF WinaXe FTP Client是LabF公司的一个Windows系统上进行文件传输的工具。 LabF WinaXe FTP Client 7.7版本存在安全漏洞,该漏洞源于FTP横幅解析功能边界检查不当,可能导致缓冲区溢出。

Description (English)

LabF WinaXe FTP Client is a document transfer tool on a Windows system of LabF. There is a security loophole in version 7.7 of LabF WinaXe FTP Clit, which stems from the inappropriate border check of the FTP’s banner resolution function, which could lead to a spilling of the buffer zone.

Hazard Level

Low

Vulnerability Type

其他

Affected Vendor

LabF

Published

2025-07-15

Last Modified

2026-02-24

References

https://www.exploit-db.com/exploits/40767 http://hyp3rlinx.altervista.org/advisories/WINAXE-FTP-CLIENT-REMOTE-BUFFER-OVERFLOW.txt https://www.vulncheck.com/advisories/wina-xe-ftp-client-remote-buffer-overflow https://raw.githubusercontent.com/rapid7/metasploit-framework/master/modules/exploits/windows/ftp/winaxe_server_ready.rb https://nvd.nist.gov/vuln/detail/CVE-2025-34107

Share on: