CNNVD-202508-1462 Information

CNNVD ID

CNNVD-202508-1462

CVE-2012-10055

  • CNNVD Published: 2025-08-13

Description (Chinese)

ComSndFTP FTP Server是ComSndFTP公司的一个FTP服务器软件。 ComSndFTP FTP Server 1.3.7 Beta版本存在安全漏洞,该漏洞源于处理USER命令时存在格式化字符串漏洞,可能导致执行任意代码。

Description (English)

ComSndFTP FTP Server is an FTP server software for ComSndFTP. The ComsndFTP FTP Server 1.3.7 Beta version has a security loophole, which stems from a formalized string gap in the handling of USER orders, which may lead to the enforcement of any code.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

ComSndFTP

Published

2025-08-13

Last Modified

2026-02-24

References

https://raw.githubusercontent.com/rapid7/metasploit-framework/master/modules/exploits/windows/ftp/comsnd_ftpd_fmtstr.rb http://ftp.comsnd.com/ https://web.archive.org/web/20120317214524/ https://www.exploit-db.com/exploits/19024 https://www.exploit-db.com/exploits/19177 https://www.vulncheck.com/advisories/comsndftp-user-format-string-rce

Share on: