Xlight FTP Server 3.9.3.6 contains a stack buffer overflow vulnerability in the 'Execute Program' configuration that allows attackers to crash the application. Attackers can trigger the vulnerability by inserting 294 characters into the program execution configuration, causing a denial of service condition.
Metrics
Affected Vendors & Products
References
History
Tue, 16 Dec 2025 23:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 16 Dec 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Xlightftpd
Xlightftpd xlight Ftp Server |
|
| Vendors & Products |
Xlightftpd
Xlightftpd xlight Ftp Server |
Mon, 15 Dec 2025 20:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Xlight FTP Server 3.9.3.6 contains a stack buffer overflow vulnerability in the 'Execute Program' configuration that allows attackers to crash the application. Attackers can trigger the vulnerability by inserting 294 characters into the program execution configuration, causing a denial of service condition. | |
| Title | Xlight FTP Server 3.9.3.6 Stack Buffer Overflow Vulnerability via Execute Program | |
| Weaknesses | CWE-121 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: VulnCheck
Published: 2025-12-15T20:28:21.800Z
Updated: 2025-12-15T21:46:48.698Z
Reserved: 2025-12-13T14:25:05.001Z
Link: CVE-2023-53886
Updated: 2025-12-15T21:37:59.248Z
Status : Awaiting Analysis
Published: 2025-12-15T21:15:51.690
Modified: 2025-12-16T14:10:11.300
Link: CVE-2023-53886
No data.