Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2022-41985


An authentication bypass vulnerability exists in the Authentication functionality of Weston Embedded uC-FTPs v 1.98.00. A specially crafted set of network packets can lead to authentication bypass and denial of service. An attacker can send a sequence of unauthenticated packets to trigger this vulnerability.


Published

2023-05-10T16:15:09.400

Last Modified

2024-11-21T07:24:13.017

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 8.6 (HIGH)

Weaknesses
  • Type: Secondary
    CWE-303
  • Type: Primary
    CWE-287

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application weston-embedded uc-ftps 1.98.00 Yes

References