Back

CVE-2006-0328

Format string vulnerability in Tftpd32 2.81 allows remote attackers to cause a denial of service via format string specifiers in a filename in a (1) GET or (2) SEND request.

Published: Jan 21, 2006 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (1)

Vendor Product Version
philippe_jounin tftpd32 2.81

GitHub Security Advisory GHSA-3h84-xx23-2982

Format string vulnerability in Tftpd32 2.81 allows remote attackers to cause a denial of service...

Risk Scores

CVSS Score 5.0 / 10
EPSS Score 7.57%

Top 6% most likely to be exploited

Threat Score 22.3 / 100

Data Sources

NVD EPSS GitHub