Main
Vulnerability Database
Exploits
ID:5792 - Exploit for Resource exhaustion in BearFTP - CVE-2020-8416
ID:5792 - Exploit for Resource exhaustion in BearFTP - CVE-2020-8416
Published: June 17, 2021
Vulnerability identifier: #VU24919
Vulnerability risk: Medium
CVE-ID: CVE-2020-8416
CWE-ID: CWE-400
Exploitation vector: Remote access
Vulnerable software:
BearFTP
BearFTP
Link to public exploit:
Vulnerability description
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to improper input validation when processing a large volume of connections to the PASV mode port. A remote attacker can trigger resource exhaustion and perform a denial of service (DoS) attack.
Remediation
Install updates from vendor's website.