CVE-2024-41255
filestash v0.4 is configured to skip TLS certificate verification when using the FTPS protocol, possibly allowing attack
filestash v0.4 is configured to skip TLS certificate verification when using the FTPS protocol, possibly allowing attackers to execute a man-in-the-middle attack via the Init function of index.go.
HIGH · CVSS 7.5
EPSS 0.00054
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0