Description
Xlight FTP Server 3.9.3.6 contains a stack buffer overflow vulnerability in the 'Execute Program' configuration that allows attackers to crash the application. Attackers can trigger the vulnerability by inserting 294 characters into the program execution configuration, causing a denial of service condition.
Problem types
Product status
Credits
Yehia Elghaly
References
www.exploit-db.com/exploits/51665
www.exploit-db.com/exploits/51665 (ExploitDB-51665)
www.xlightftpd.com/ (XLight FTP Server)
www.vulncheck.com/...rflow-vulnerability-via-execute-program (VulnCheck Advisory: Xlight FTP Server 3.9.3.6 Stack Buffer Overflow Vulnerability via Execute Program)
Data based on CVE®. Copyright © 1999-2025, The MITRE Corporation. All rights reserved.