← voltar
CVE-2025-5548

FreeFloat FTP Server NOOP Command buffer overflow

CVSS 6.9 MEDIUMEPSS 10.1%CWE-119CWE-120
A vulnerability, which was classified as critical, was found in FreeFloat FTP Server 1.0. Affected is an unknown function of the component NOOP Command Handler. The manipulation leads to buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N
Produtos afetados
FreeFloat · FTP Server
PoCs públicas encontradas30
githubgithub.com/mk017-hk/CVE-2025-55482githubgithub.com/TheMalwareGuardian/CVE-2025-55481githubgithub.com/alanschmidt81/CVE-2025-55480githubgithub.com/javyan05/CVE-2025-55480githubgithub.com/charlyrr/CVE-2025-55480githubgithub.com/LorenzoPorrasDuque/CVE-2025-5548-POC0githubgithub.com/celiagomezserra/CVE-2025-55480githubgithub.com/ZoneToolsCiber/Explotando-FreeFloatFTP-CVE-2025-55480githubgithub.com/alfa8sa/CVE-2025-55480githubgithub.com/anasrami12/CVE-2025-55480githubgithub.com/iamEscri/CVE-2025-5548-FreeFloat-FTP-Buffer-Overflow0githubgithub.com/Victor875/CVE-2025-55480githubgithub.com/luisyapura/Analisis-y-Explotacion-de-CVE-2025-55480githubgithub.com/jgs-developer/CVE-2025-55480githubgithub.com/raulsineiro/CVE-2025-55480githubgithub.com/Diego57709/CVE-2025-55480githubgithub.com/alberto-galindo/CVE-2025-55480githubgithub.com/elrajiii/CVE-2025-55480githubgithub.com/Alvarosr16/CVE-2025-55480githubgithub.com/PopClom/CVE-2025-55480githubgithub.com/gumbita/cve-2025-5548-freefloat-ftp-walkthrough0githubgithub.com/grospomg/CVE-2025-5548-Exploit-Development0githubgithub.com/x3nt4ur0/CVE-2025-55480githubgithub.com/FKShield/CVE-2025-55480githubgithub.com/jesusdominguez87/CVE-2025-55480githubgithub.com/CryptoMachio/CVE-2025-55480githubgithub.com/greycat-amc/CVE-2025-55480githubgithub.com/JSantos1990/CVE-2025-55480exploitdbwww.exploit-db.com/exploits/52323não verificadocve_referencefitoxs.com/exploit/exploit-181bb9e57fbeedb99be8435f014d23b3d936df3ff95db127e57d6832dc48df8f.txtnão verificado
⚠ Recursos públicos, para você avaliar a exposição de sistemas que controla ou está autorizado a testar. Teste apenas com autorização.

Quer saber se a sua infraestrutura está exposta a isto?

Falar com a TrueHacking →