Search CVE reports
1 result
CVE-2021-37533
Medium priorityPrior to Apache Commons Net 3.9.0, Net's FTP client trusts the host from PASV response by default. A malicious server can redirect the Commons Net code to use a different host, but the user has to connect to the malicious server...
1 affected packages
libcommons-net-java
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
libcommons-net-java | — | Fixed | Fixed | Fixed | Fixed |