CVE-2010-20007 - CVE House
Back to Database
Status published High CVE-2010-20007

Seagull FTP v3.3 Build 409 Stack Buffer Overflow

Vulnerability Description

Seagull FTP Client <= v3.3 Build 409 contains a stack-based buffer overflow vulnerability in its FTP directory listing parser. When the client connects to an FTP server and receives a crafted response to a LIST command containing an excessively long filename, the application fails to properly validate input length, resulting in a buffer overflow that overwrites the Structured Exception Handler (SEH). This may allow remote attackers to execute arbitrary code on the client system. This product line was discontinued and users were advised to use BlueZone Secure FTP instead, at the time of disclosure.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2010-20007

Credits & Attribution

The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:

  • corelanc0d3r of Corelan Team

Affected Vendor

Rocket Software

View all reports →

Affected Software

Seagull FTP Client
Vulnerable Versions:
0

Timeline

Official Publish: August 21st, 2025
Last Modified: May 15th, 2026
Added to House: July 19th, 2026

CVSS Vectors

Weaknesses (CWE)