FTPShell Server 6.83 contains a buffer overflow vulnerability that allows local attackers to crash the application by supplying an excessively long string in the account name field. Attackers can trigger a denial of service by pasting a 417-byte payload into the 'Account name to ban' parameter within the Manage FTP Accounts interface.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Mon, 30 Mar 2026 11:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | FTPShell Server 6.83 contains a buffer overflow vulnerability that allows local attackers to crash the application by supplying an excessively long string in the account name field. Attackers can trigger a denial of service by pasting a 417-byte payload into the 'Account name to ban' parameter within the Manage FTP Accounts interface. | |
| Title | FTPShell Server 6.83 Denial of Service via Account Name | |
| First Time appeared |
Ftpshell
Ftpshell ftpshell Server |
|
| Weaknesses | CWE-787 | |
| CPEs | cpe:2.3:a:ftpshell:ftpshell_server:2002:*:*:*:*:*:*:* cpe:2.3:a:ftpshell:ftpshell_server:6.83:*:*:*:*:*:*:* |
|
| Vendors & Products |
Ftpshell
Ftpshell ftpshell Server |
|
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-03-30T11:02:19.723Z
Reserved: 2026-03-30T10:53:37.330Z
Link: CVE-2018-25226
No data.
Status : Awaiting Analysis
Published: 2026-03-30T12:16:15.077
Modified: 2026-03-30T13:26:07.647
Link: CVE-2018-25226
No data.
OpenCVE Enrichment
No data.
Weaknesses