CVE-2020-37069

Konica Minolta FTP Utility 1.0 contains a buffer overflow vulnerability in the NLST command that allows attackers to overwrite system registers. Attackers can send an oversized buffer of 1500 'A' characters to crash the FTP server and potentially execute unauthorized code.
Configurations

Configuration 1 (hide)

cpe:2.3:a:konicaminolta:ftp_utility:1.0:*:*:*:*:*:*:*

History

25 Feb 2026, 18:59

Type Values Removed Values Added
First Time Konicaminolta ftp Utility
Konicaminolta
Summary
  • (es) Konica Minolta FTP Utility 1.0 contiene una vulnerabilidad de desbordamiento de búfer en el comando NLST que permite a los atacantes sobrescribir registros del sistema. Los atacantes pueden enviar un búfer sobredimensionado de 1500 caracteres 'A' para colapsar el servidor FTP y potencialmente ejecutar código no autorizado.
CPE cpe:2.3:a:konicaminolta:ftp_utility:1.0:*:*:*:*:*:*:*
References () https://konica-minolta-ftp-utility.software.informer.com/download/ - () https://konica-minolta-ftp-utility.software.informer.com/download/ - Permissions Required
References () https://www.exploit-db.com/exploits/48502 - () https://www.exploit-db.com/exploits/48502 - Exploit, Third Party Advisory, VDB Entry
References () https://www.konicaminolta.us/ - () https://www.konicaminolta.us/ - Product
References () https://www.vulncheck.com/advisories/konica-minolta-ftp-utility-nlst-denial-of-service - () https://www.vulncheck.com/advisories/konica-minolta-ftp-utility-nlst-denial-of-service - Third Party Advisory

03 Feb 2026, 22:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-02-03 22:16

Updated : 2026-02-25 18:59


NVD link : CVE-2020-37069

Mitre link : CVE-2020-37069

CVE.ORG link : CVE-2020-37069


JSON object : View

Products Affected

konicaminolta

  • ftp_utility
CWE
CWE-120

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')