VYPR

CCFile

by Youngzsoft

CVEs (1)

  • CVE-2017-12784HigAug 21, 2017
    risk 0.49cvss 7.5epss 0.02

    In Youngzsoft CCFile (aka CC File Transfer) 3.6, by sending a crafted HTTP request, it is possible for a malicious user to remotely crash the affected software. No authentication is required. An example payload is a malformed request header with many '|' characters. NOTE: some…