CVE-2020-11701
PoC —CVSS 3.1
8.8 high
EPSS
<1%p41
Published
()
Modified
Description
An issue was discovered in ProVide (formerly zFTPServer) through 13.1. CSRF exists in the User Web Interface, as demonstrated by granting filesystem access to the public for uploading and deleting files and directories.
- Vendors
- provideserver
- Products
- provide ftp server
- Weakness
- CWE-352
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
In the news0 stories
No ingested article mentions this CVE yet.