CVE-2015-10003

A vulnerability, which was classified as problematic, was found in FileZilla Server up to 0.9.50. This affects an unknown part of the component PORT Handler. The manipulation leads to unintended intermediary. It is possible to initiate the attack remotely. Upgrading to version 0.9.51 is able to address this issue. It is recommended to upgrade the affected component.
References
Link Resource
http://www.securitygalore.com/site3/filezilla_ftp_server_advisory Patch Technical Description Third Party Advisory
https://vuldb.com/?id.97203 Third Party Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:filezilla-project:filezilla_server:*:*:*:*:*:*:*:*

History

25 Jul 2022, 18:48

Type Values Removed Values Added
References (MISC) http://www.securitygalore.com/site3/filezilla_ftp_server_advisory - (MISC) http://www.securitygalore.com/site3/filezilla_ftp_server_advisory - Patch, Technical Description, Third Party Advisory
References (MISC) https://vuldb.com/?id.97203 - (MISC) https://vuldb.com/?id.97203 - Third Party Advisory
First Time Filezilla-project
Filezilla-project filezilla Server
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 4.3
CPE cpe:2.3:a:filezilla-project:filezilla_server:*:*:*:*:*:*:*:*
CWE CWE-610

17 Jul 2022, 07:15

Type Values Removed Values Added
New CVE

Information

Published : 2022-07-17 07:15

Updated : 2023-12-10 14:35


NVD link : CVE-2015-10003

Mitre link : CVE-2015-10003

CVE.ORG link : CVE-2015-10003


JSON object : View

Products Affected

filezilla-project

  • filezilla_server
CWE
CWE-610

Externally Controlled Reference to a Resource in Another Sphere

CWE-441

Unintended Proxy or Intermediary ('Confused Deputy')