CVE-2022-27052

Severity CVSS v4.0:
Pending analysis
Type:
CWE-428 Unquoted Search Path or Element
Publication date:
31/03/2022
Last modified:
08/04/2022

Description

FreeFtpd version 1.0.13 and below contains an unquoted service path vulnerability which allows local users to launch processes with elevated privileges.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:freesshd:freeftpd:*:*:*:*:*:*:*:* 1.0.13 (excluding)