Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
8.6

Ayukov NFTP client 1.71: Malicious File Transfer Can Run Malware

CVE-2019-25361
Summary

The Ayukov NFTP client 1.71 has a security issue that allows hackers to send a fake file command to the client, potentially allowing the hacker to access your system and run unauthorized software. This is a serious risk because it could allow an attacker to take control of your system. To protect your system, update to a newer version of the Ayukov NFTP client or consider replacing it with a different one.

Original title
Ayukov NFTP client 1.71 contains a buffer overflow vulnerability in the SYST command handling that allows remote attackers to execute arbitrary code. Attackers can send a specially crafted SYST com...
Original description
Ayukov NFTP client 1.71 contains a buffer overflow vulnerability in the SYST command handling that allows remote attackers to execute arbitrary code. Attackers can send a specially crafted SYST command with oversized payload to trigger a buffer overflow and execute a bind shell on port 5150.
nvd CVSS3.1 9.8
nvd CVSS4.0 8.6
Vulnerability type
CWE-121 Stack-based Buffer Overflow
Published: 18 Feb 2026 · Updated: 11 Mar 2026 · First seen: 6 Mar 2026