Vulnerability Description
Micro Focus Rumba FTP 4.X client buffer overflow makes it possible to corrupt the stack and allow arbitrary code execution. Fixed in: Rumba FTP 4.5 (HF 14668). This can only occur if a client connects to a malicious server.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Microfocus | Rumba Ftp | 4.0 |
Related Weaknesses (CWE)
References
- http://community.microfocus.com/microfocus/mainframe_solutions/rumba/w/knowledge
- http://www.securityfocus.com/bid/93974
- https://www.exploit-db.com/exploits/40651/
- http://community.microfocus.com/microfocus/mainframe_solutions/rumba/w/knowledge
- http://www.securityfocus.com/bid/93974
- https://www.exploit-db.com/exploits/40651/
FAQ
What is CVE-2016-5764?
CVE-2016-5764 is a vulnerability with a CVSS score of 8.8 (HIGH). Micro Focus Rumba FTP 4.X client buffer overflow makes it possible to corrupt the stack and allow arbitrary code execution. Fixed in: Rumba FTP 4.5 (HF 14668). This can only occur if a client connects...
How severe is CVE-2016-5764?
CVE-2016-5764 has been rated HIGH with a CVSS base score of 8.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2016-5764?
Check the references section above for vendor advisories and patch information. Affected products include: Microfocus Rumba Ftp.