CVE-2019-25321

FTP Navigator 8.03 contains a stack overflow vulnerability that allows attackers to execute arbitrary code by overwriting Structured Exception Handler (SEH) registers. Attackers can craft a malicious payload that triggers a buffer overflow when pasted into the Custom Command textbox, enabling remote code execution and launching the calculator as proof of concept.
Configurations

Configuration 1 (hide)

cpe:2.3:a:internet-soft:ftp_navigator:*:*:*:*:*:*:*:*

History

03 Mar 2026, 14:48

Type Values Removed Values Added
CPE cpe:2.3:a:internet-soft:ftp_navigator:*:*:*:*:*:*:*:*
First Time Internet-soft
Internet-soft ftp Navigator
Summary
  • (es) FTP Navigator 8.03 contiene una vulnerabilidad de desbordamiento de pila que permite a los atacantes ejecutar código arbitrario sobrescribiendo los registros del Manejador de Excepciones Estructurado (SEH). Los atacantes pueden crear una carga útil maliciosa que desencadena un desbordamiento de búfer cuando se pega en el cuadro de texto Custom Command, lo que permite la ejecución remota de código y el lanzamiento de la calculadora como prueba de concepto.
References () http://www.internet-soft.com/ - () http://www.internet-soft.com/ - Product
References () https://www.exploit-db.com/exploits/47794 - () https://www.exploit-db.com/exploits/47794 - Exploit, VDB Entry
References () https://www.exploit-db.com/exploits/47812 - () https://www.exploit-db.com/exploits/47812 - Exploit, Third Party Advisory, VDB Entry
References () https://www.vulncheck.com/advisories/ftp-navigator-stack-overflow-seh - () https://www.vulncheck.com/advisories/ftp-navigator-stack-overflow-seh - Third Party Advisory

12 Feb 2026, 23:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-02-12 23:16

Updated : 2026-03-03 14:48


NVD link : CVE-2019-25321

Mitre link : CVE-2019-25321

CVE.ORG link : CVE-2019-25321


JSON object : View

Products Affected

internet-soft

  • ftp_navigator
CWE
CWE-121

Stack-based Buffer Overflow