Back

CVE-2002-1244

Format string vulnerability in Pablo FTP Server 1.5, 1.3, and possibly other versions, allows remote attackers to cause a denial of service and possibly execute arbitrary code via format strings in the USER command.

Published: Nov 12, 2002 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (4)

Vendor Product Version
pablo_software_solutions pablo_ftp_server 1.0
pablo_software_solutions pablo_ftp_server 1.2
pablo_software_solutions pablo_ftp_server 1.3
pablo_software_solutions pablo_ftp_server 1.5

GitHub Security Advisory GHSA-xmw9-879h-j6mq

Format string vulnerability in Pablo FTP Server 1.5, 1.3, and possibly other versions, allows...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 2.96%

Top 14% most likely to be exploited

Threat Score 30.9 / 100

Data Sources

NVD EPSS GitHub