Exploit for #VU16988 Security restrictions bypass in WinSCP


Published: 2020-05-12 | Updated: 2021-06-17

Vulnerability identifier: #VU16988

Vulnerability risk: Low

CVSSv3.1: 5.3 [CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N/E:P/RL:O/RC:C]

CVE-ID: CVE-2019-6111

CWE-ID: CWE-20

Exploitation vector: Network

Exploits in database: 4

Impact: Data manipulation

Vulnerable software:
WinSCP
Client/Desktop applications / File managers, FTP clients

Vendor: winscp.sourceforge.net