Monitor vulnerabilities like this one.
Sign up free to get alerted when software you use is affected.
8.6
Ayukov NFTP client 1.71: Malicious File Transfer Can Run Malware
CVE-2019-25361
Summary
The Ayukov NFTP client 1.71 has a security issue that allows hackers to send a fake file command to the client, potentially allowing the hacker to access your system and run unauthorized software. This is a serious risk because it could allow an attacker to take control of your system. To protect your system, update to a newer version of the Ayukov NFTP client or consider replacing it with a different one.
Original title
Ayukov NFTP client 1.71 contains a buffer overflow vulnerability in the SYST command handling that allows remote attackers to execute arbitrary code. Attackers can send a specially crafted SYST com...
Original description
Ayukov NFTP client 1.71 contains a buffer overflow vulnerability in the SYST command handling that allows remote attackers to execute arbitrary code. Attackers can send a specially crafted SYST command with oversized payload to trigger a buffer overflow and execute a bind shell on port 5150.
nvd CVSS3.1
9.8
nvd CVSS4.0
8.6
Vulnerability type
CWE-121
Stack-based Buffer Overflow
Published: 18 Feb 2026 · Updated: 11 Mar 2026 · First seen: 6 Mar 2026