🔐 CVE Alert

CVE-2010-20045

UNKNOWN 0.0

FileWrangler <= 5.30 Stack Buffer Overflow

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

FileWrangler <= 5.30 suffers from a stack-based buffer overflow vulnerability when parsing directory listings from an FTP server. A malicious server can send an overlong folder name in response to a LIST command, triggering memory corruption during client-side rendering. Exploitation requires passive user interaction—simply connecting to the server—without further input. Successful exploitation may lead to arbitrary code execution.

CWE CWE-121
Vendor cursorarts
Product filewrangler
Published Aug 20, 2025
Last Updated Apr 7, 2026
Stay Ahead of the Next One

Get instant alerts for cursorarts filewrangler

Be the first to know when new unknown vulnerabilities affecting cursorarts filewrangler are published — delivered to Slack, Telegram or Discord.

Get Free Alerts → Free · No credit card · 60 sec setup

Affected Versions

CursorArts / FileWrangler
* ≤ 5.30

References

NVD ↗ CVE.org ↗ EPSS Data ↗
web.archive.org: https://web.archive.org/web/20111016194057/https://www.corelan.be/index.php/2010/10/12/death-of-an-ftp-client/ cursorarts.com: https://cursorarts.com/ca_fw.html raw.githubusercontent.com: https://raw.githubusercontent.com/rapid7/metasploit-framework/master/modules/exploits/windows/ftp/filewrangler_list_reply.rb exploit-db.com: https://www.exploit-db.com/exploits/16721 vulncheck.com: https://www.vulncheck.com/advisories/filewrangler-stack-buffer-overflow

Credits

nullthreat