CVE-2020-26130

Issues were discovered in Open TFTP Server multithreaded 1.66 and Open TFTP Server single port 1.66. Due to insufficient access restrictions in the default installation directory, an attacker can elevate privileges by replacing the OpenTFTPServerMT.exe or the OpenTFTPServerSP.exe binary.
References
Link Resource
https://sourceforge.net/projects/tftp-server/ Product
https://github.com/an0ry/advisories Exploit Third Party Advisory
Configurations

Configuration 1

cpe:2.3:a:open_tftp_server_project:open_tftp_server:1.66:*:*:*:mt:*:*:*
cpe:2.3:a:open_tftp_server_project:open_tftp_server:1.66:*:*:*:sp:*:*:*

Information

Published : 2020-10-28 06:15

Updated : 2021-07-21 11:39


NVD link : CVE-2020-26130

Mitre link : CVE-2020-26130

Products Affected
No products.
CWE