CVE-2016-5764: Micro Focus Rumba FTP

High severity, CVSS 8.8. EPSS: 7.8% chance of exploitation in the next 30 days.

Micro Focus Rumba FTP 4.X client buffer overflow makes it possible to corrupt the stack and allow arbitrary code execution. Fixed in: Rumba FTP 4.5 (HF 14668). This can only occur if a client connects to a malicious server.

Affected products

  • Micro Focus Rumba FTP: version 4.0 only; version 4.1 only; version 4.2 only; version 4.3 only; version 4.4 only; version 4.5 only

Published 2016-10-27. Last modified 2026-06-17.