EmFTP Arbitrary Code Execution Vulnerability (CVE-2014-3910)
Released on: 2014-09-04
Updated on: 2014-09-05
Affected Systems:
EmFTP
Description:
--------------------------------------------------------------------------------
Bugtraq id: 69623
CVE (CAN) ID: CVE-2014-3910
EmFTP is a lightweight FTP Client for Windows.
EmFTP has the arbitrary code execution vulnerability. Attackers can exploit this vulnerability to execute arbitrary code in the affected application context.
<* Source: JPCERT
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
EmFTP
-----
Currently, the vendor does not provide patches or upgrade programs. We recommend that users who use the software follow the vendor's homepage to obtain the latest version:
Http://www.emftp.com/
This article permanently updates the link address: