CVE-2009-1592 is a critical stack-based buffer overflow vulnerability affecting ElectraSoft 32bit FTP version 09.04.24, which occurs when the client processes an excessively long banner sent by a malicious remote FTP server. Assigned a maximum CVSS score of 10.0, this flaw permits unauthenticated attackers to execute arbitrary code and achieve complete system compromise through a low-complexity network vector. While there is no current evidence of active exploitation in the wild or inclusion in the CISA Known Exploited Vulnerabilities catalog, functional proof-of-concept exploit code is publicly available on ExploitDB, necessitating immediate remediation despite the lack of recent media attention.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
09.04.24CPE matchmatch criteria | cpe:2.3:a:electrasoft:32bit_ftp:09.04.24:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:C/I:C/A:C
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.