Description

A stack-based buffer overflow vulnerability exists in FreeFloat FTP Server version 1.0.0. The server fails to properly validate input passed to the USER command, allowing remote attackers to overwrite memory and potentially execute arbitrary code. The flaw is triggered by sending an overly long username string, which overflows the buffer allocated for user authentication.

INFO

Published Date :

2025-08-05T20:02:08.874Z

Last Modified :

2026-04-07T14:02:23.101Z

Source :

VulnCheck
AFFECTED PRODUCTS

The following products are affected by CVE-2012-10023 vulnerability.

Vendors Products
Freefloat
  • Freefloat Ftp Server
  • Ftp Server

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Attack Requirements
Privileges Required
User Interaction
VS Confidentiality
VS Integrity
VS Availability
SS Confidentiality
SS Integrity
SS Availability
Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact