LeakyCreds
NewInstant webhook alerts now available — notified within seconds of any credential detection.Learn more →
Home / Vulnerability Intelligence / CVE-2018-25229

CVE-2018-25229 - Vulnerability Analysis

MediumCVSS: 5.5

Last Updated: March 31, 2026

BulletProof FTP Server - Denial of Service

Published: March 30, 2026Updated: March 31, 2026PoC Available

Overview

BulletProof FTP Server 2019.0.0.50 contains a denial of service caused by an oversized string input in the SMTP configuration interface, letting local attackers crash the application, exploit requires local access.

Severity & Score

Severity: Medium
CVSS Score: 5.5

Impact

Local attackers can crash the application, causing denial of service.

Mitigation

Update to the latest version.

Details

CVE ID
CVE-2018-25229
Severity
Medium
CVSS Score
5.5
Type
buffer_overflow
Status
confirmed

CWE

  • CWE-1282

CVSS Metrics

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N