๐Ÿ” CVE Alert

CVE-2010-20113

UNKNOWN 0.0

EasyFTP Server list.html path Stack Buffer Overflow

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

EasyFTP Server 1.7.0.11 and earlier contains a stack-based buffer overflow vulnerability in its HTTP interface. When processing a GET request to list.html, the server fails to properly validate the length of the path parameter. Supplying an excessively long value causes a buffer overflow on the stack, potentially corrupting control flow structures. The vulnerability is exposed through the embedded web server and does not require authentication due to default anonymous access. The issue was resolved in version 1.7.0.12, after which the product was renamed to UplusFtp.

CWE CWE-121
Vendor kmint21 software
Product easyftp server
Published Aug 21, 2025
Last Updated Apr 7, 2026
Stay Ahead of the Next One

Get instant alerts for kmint21 software easyftp server

Be the first to know when new unknown vulnerabilities affecting kmint21 software easyftp server are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

KMiNT21 Software / EasyFTP Server
* โ‰ค 1.7.0.11

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
raw.githubusercontent.com: https://raw.githubusercontent.com/rapid7/metasploit-framework/master/modules/exploits/windows/http/easyftp_list.rb exploit-db.com: https://www.exploit-db.com/exploits/11500 vulncheck.com: https://www.vulncheck.com/advisories/easyftp-server-list-html-stack-buffer-overflow

Credits

ThE g0bL!N