CVE-2014-1443: Coreftp Core FTP
Medium severity, CVSS 4.0. EPSS: 1.8% chance of exploitation in the next 30 days.
Core FTP Server 1.2 before build 515 allows remote authenticated users to obtain sensitive information (password for the previous user) via a USER command with a specific length, possibly related to an out-of-bounds read.
Affected products
- Coreftp Core FTP: version 1.2 only
Published 2014-05-02. Last modified 2026-06-17.