Vulnerability Description
Multiple buffer overflows in Core FTP Server before 1.2 build 508 allow local users to gain privileges via vectors related to reading data from config.dat and Windows Registry.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Coreftp | Core Ftp | <= 1.2 |
Related Weaknesses (CWE)
References
- http://www.securityfocus.com/archive/1/531144/100/0/threaded
- https://www.portcullis-security.com/security-research-and-downloads/security-advThird Party Advisory
- http://www.securityfocus.com/archive/1/531144/100/0/threaded
- https://www.portcullis-security.com/security-research-and-downloads/security-advThird Party Advisory
FAQ
What is CVE-2014-1215?
CVE-2014-1215 is a vulnerability with a CVSS score of 7.8 (HIGH). Multiple buffer overflows in Core FTP Server before 1.2 build 508 allow local users to gain privileges via vectors related to reading data from config.dat and Windows Registry.
How severe is CVE-2014-1215?
CVE-2014-1215 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2014-1215?
Check the references section above for vendor advisories and patch information. Affected products include: Coreftp Core Ftp.