CVE-2020-37067

Filetto 1.0 FTP server contains a denial of service vulnerability in the FEAT command processing that allows attackers to crash the service. Attackers can send an oversized FEAT command with 11,008 bytes of repeated characters to trigger a buffer overflow and terminate the FTP service.
Configurations

No configuration.

History

15 Apr 2026, 00:35

Type Values Removed Values Added
Summary
  • (es) El servidor FTP Filetto 1.0 contiene una vulnerabilidad de denegación de servicio en el procesamiento del comando FEAT que permite a los atacantes bloquear el servicio. Los atacantes pueden enviar un comando FEAT sobredimensionado con 11.008 bytes de caracteres repetidos para desencadenar un desbordamiento de búfer y finalizar el servicio FTP.

03 Feb 2026, 22:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-02-03 22:16

Updated : 2026-04-15 00:35


NVD link : CVE-2020-37067

Mitre link : CVE-2020-37067

CVE.ORG link : CVE-2020-37067


JSON object : View

Products Affected

No product.

CWE
CWE-770

Allocation of Resources Without Limits or Throttling