CVE-2007-0315 describes multiple buffer overflow vulnerabilities in FileZilla versions prior to 2.2.30a. These flaws, found in Options.cpp and QueueCtrl.cpp, could allow remote attackers to execute arbitrary code or trigger a denial of service. With a CVSS score of 9.3 (Critical), this vulnerability has a high severity, indicating it can be exploited remotely with medium attack complexity and lead to complete compromise of confidentiality, integrity, and availability. The EPSS score is low, suggesting a low probability of exploitation. There is no evidence of active exploitation, and no public exploit code is available in Metasploit, Nuclei, or ExploitDB. Community discussion and media coverage for this CVE are also minimal.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 2.2.30CPE matchmatch criteria | cpe:2.3:a:filezilla:filezilla:*:*:*:*:*:*:*:* | ||
0.9.20CPE matchmatch criteria | cpe:2.3:a:filezilla:filezilla:0.9.20:*:*:*:*:*:*:* | ||
0.9.21CPE matchmatch criteria | cpe:2.3:a:filezilla:filezilla:0.9.21:*:*:*:*:*:*:* | ||
0.9.22CPE matchmatch criteria | cpe:2.3:a:filezilla:filezilla:0.9.22:*:*:*:*:*:*:* | ||
2.2.15CPE matchmatch criteria | cpe:2.3:a:filezilla:filezilla:2.2.15:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:M/Au:N/C:C/I:C/A:C
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.