← Back

CVE-2010-0962

nvd nist
Published: Mar 10, 2010Modified: Apr 29, 2026

JSON object

Loading...
5.0
Vector
AV:N/AC:L/Au:N/C:N/I:P/A:N
Exploitability: 10.0 / Impact: 2.9
Source: NVD

Description

The FTP proxy server in Apple AirPort Express, AirPort Extreme, and Time Capsule with firmware 7.5 does not restrict the IP address and port specified in a PORT command from a client, which allows remote attackers to leverage intranet FTP servers for arbitrary TCP forwarding via a crafted PORT command.

Affected (3)

3 products
Airport Express
Airport Extreme
Time Capsule
Configuration A
3 vulnerable
Vulnerable SoftwareAffected Versions
Version 7.5
Version 7.5
Version 7.5

Related CWEs

References (10)

Timeline

No history available yet.