CVE-2013-3930: Coreftp Core FTP

High severity, CVSS 9.3. EPSS: 3% chance of exploitation in the next 30 days.

Stack-based buffer overflow in Core FTP before 2.2 build 1785 allows remote FTP servers to execute arbitrary code via a crafted directory name in a CWD command reply.

Affected products

  • Coreftp Core FTP: up to and including 2.2

Published 2014-04-04. Last modified 2026-06-16.