VYPR

FTP Commander

by Internet Soft

CVEs (2)

  • CVE-2019-25332HigFeb 12, 2026
    risk 0.55cvss 8.4epss 0.00

    FTP Commander Pro 8.03 contains a local stack overflow vulnerability that allows attackers to execute arbitrary code by overwriting the EIP register through a custom command input. Attackers can craft a malicious payload of 4108 bytes to overwrite memory and execute shellcode,…

  • CVE-2017-11749HigJul 30, 2017
    risk 0.51cvss 7.8epss 0.01

    InternetSoft FTP Commander 8.02 and prior has an untrusted search path, allowing DLL hijacking via a Trojan horse dwmapi.dll file.