CVE-2017-6367

Severity CVSS v4.0:
Pending analysis
Type:
CWE-20 Input Validation
Publication date:
14/03/2017
Last modified:
20/04/2025

Description

In Cerberus FTP Server 8.0.10.1, a crafted HTTP request causes the Windows service to crash. The attack methodology involves a long Host header and an invalid Content-Length header.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:cerberusftp:ftp_server:8.0.10.1:*:*:*:*:*:*:*