Security Advisory

CVE-2022-46377

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-05-10 15:23:52
Last updated 2025-11-04 19:14:24
Assigner talos
State PUBLISHED

Description

An out-of-bounds read vulnerability exists in the PORT command parameter extraction functionality of Weston Embedded uC-FTPs v 1.98.00. A specially-crafted set of network packets can lead to denial of service. An attacker can send packets to trigger this vulnerability.This vulnerability occurs when no IP address argument is provided to the `PORT` command.