Sploitus

CVE-2019-16864

1 known exploit for CVE-2019-16864

CompleteFTPService.exe in the server in EnterpriseDT CompleteFTP before 12.1.4 allows Remote Code Execution by leveraging a Windows user account that has SSH access. The exec command is always run as SYSTEM.

Affected products
Enterprisedt Completeftp
Enterprisedt Completeftp Server
< 12.1.4
Fix
Available
CVSS 3.1
8.8 HIGH
EPSS
7.7% (94th percentile)
Weakness
CWE-77
NVD status
Modified
Published
2022-02-14
CVE-2019-16864 at NVD
Authoritative description, scoring and affected products

1 known exploit for CVE-2019-16864

Proof-of-concept code and exploit modules indexed by Sploitus