Unrated severityNVD Advisory· Published Jun 7, 2022· Updated Aug 3, 2024
CVE-2022-29620
CVE-2022-29620
Description
FileZilla v3.59.0 allows attackers to obtain cleartext passwords of connected SSH or FTP servers via a memory dump.- NOTE: the vendor does not consider this a vulnerability
Affected products
2Patches
Vulnerability mechanics
References
3- whichbuffer.medium.com/filezilla-client-cleartext-storage-of-sensitive-information-in-memory-vulnerability-83958c1e1643mitrex_refsource_MISC
- youtu.be/ErZl1i7McHkmitrex_refsource_MISC
- youtu.be/eSlfQQytIq0mitrex_refsource_MISC
News mentions
0No linked articles in our index yet.