The lreply function in wu-ftpd 2.6.0 and earlier does not properly cleanse an untrusted format string, which allows remote attackers to execute arbitrary commands via the SITE EXEC command.
Loading...
Loading...
The lreply function in wu-ftpd 2.6.0 and earlier does not properly cleanse an untrusted format string, which allows remote attackers to execute arbitrary commands via the SITE EXEC command.
July 7, 2000
April 16, 2026
Every time one of our enrichment pipelines (NVD, MITRE cvelistV5, EPSS, CISA KEV, GHSA, OSV, vendor advisories) ran against this CVE. Most recent first.
Working exploit code is in the public domain (1 Metasploit module) (7 Exploit-DB entries). Defenders should treat patch urgency accordingly — public PoCs typically lead to mass-exploitation within 24-72 hours.
WU-FTPD - Site EXEC/INDEX Format String (Metasploit)
Open source ↗BeroFTPD 1.3.4(1) (Linux x86) - Remote Code Execution
Open source ↗WU-FTPD 2.4.2/2.5 .0/2.6.0 - Remote Format String Stack Overwrite (3)
Open source ↗WU-FTPD 2.6.0 - Remote Format Strings
Open source ↗WU-FTPD 2.6.0 - Remote Command Execution
Open source ↗WU-FTPD 2.4.2/2.5 .0/2.6.0 - Remote Format String Stack Overwrite (2)
Open source ↗WU-FTPD SITE EXEC/INDEX Format String Vulnerability
Open source ↗WU-FTPD 2.4.2/2.5 .0/2.6.0 - Remote Format String Stack Overwrite (1)
Open source ↗See which npm, PyPI, Go, and Maven packages are affected by CVE-2000-0573
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.