CVE-2017-6367 is a denial-of-service vulnerability affecting Cerberus FTP Server version 8.0.10.1. An unauthenticated attacker can crash the Windows service by sending a specially crafted HTTP request containing a long Host header and an invalid Content-Length header. This vulnerability is rated as High severity (CVSS 7.5), indicating a significant impact on availability with low attack complexity. While there is no evidence of active exploitation or Metasploit modules, a public exploit (EDB-41596) exists, though community discussion and media coverage are minimal.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
8.0.10.1CPE matchmatch criteria | cpe:2.3:a:cerberusftp:ftp_server:8.0.10.1:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.