Vulnerabilities > GNU > Inetutils > Medium

DATE CVE VULNERABILITY TITLE RISK
2021-09-03 CVE-2021-40491 Insufficient Verification of Data Authenticity vulnerability in multiple products
The ftp client in GNU Inetutils before 2.2 does not validate addresses returned by PASV/LSPV responses to make sure they match the server address.
network
low complexity
gnu debian CWE-345
6.5