本ページは hfiref0x lightftp に影響する公開済み CVE(NVD の CPE 経由で関連付け)を列挙します。各行に深刻度指標・概要・公開日が含まれます。
| CVE | 概要 | ソース | CVSS 最大値 | EPSS(%) | 公開 | 更新 |
|---|---|---|---|---|---|---|
| CVE-2025-65403 | A buffer overflow in the g_cfg.MaxUsers component of LightFTP v2.0 allows attackers to cause a Denial of Service (DoS) via a crafted input. | [email protected] | 6.5 | 0.27% | 2025-12-01 | 2026-06-17 |
| CVE-2023-24042 | A race condition in LightFTP through 2.2 allows an attacker to achieve path traversal via a malformed FTP request. A handler thread can use an overwritten context->FileName. | [email protected] | 7.5 | 0.52% | 2023-01-20 | 2026-06-17 |
| CVE-2017-1000218 | LightFTP version 1.1 is vulnerable to a buffer overflow in the "writelogentry" function resulting a denial of services or a remote code execution. | [email protected] | 9.8 | 3.38% | 2017-11-16 | 2026-06-16 |