[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-CVE-2020-9273":6},{"stargazers_count":4,"fetched_at":5},7,"2026-06-04T14:53:31.930Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":20,"aliases":21,"duplicate_of":9,"upstream":22,"downstream":23,"duplicates":40,"related":41,"reserved_at":9,"published_at":45,"modified_at":46,"state":47,"summary":48,"references_raw":57,"kevs":117,"epss":118,"epss_history":121,"metrics":347,"affected":358},"CVE-2020-9273","In ProFTPD 1.3.7, it is possible to corrupt the memory pool by interrupting the data transfer channel. This triggers a use-after-free in alloc_pool in pool.c, and possible remote code execution.",null,[11],{"_key":12,"id":12,"name":13,"description":14,"type":15,"status":16,"abstraction":17,"likelihood_of_exploit":18,"capec":19},"CWE-416","Use After Free","The product reuses or references memory after it has been freed. At some point afterward, the memory may be allocated again and saved in another pointer, while the original pointer references a location somewhere within the new allocation. Any operations using the original pointer are no longer valid because the memory \"belongs\" to the code that operates on the new pointer.","weakness","Stable","Variant","High",[],[],[],[],[24,26,28,30,32,34,36,38],{"_key":25},"OPENSUSE-SU-2020:0273-1",{"_key":27},"OPENSUSE-SU-2024:11196-1",{"_key":29},"DLA-2115-1",{"_key":31},"DLA-2115-2",{"_key":33},"DSA-4635-1",{"_key":35},"MGASA-2020-0120",{"_key":37},"UBUNTU-CVE-2020-9273",{"_key":39},"DEBIAN-CVE-2020-9273",[],[42,43,44],{"_key":35},{"_key":25},{"_key":27},"2020-02-20T15:22:53.000Z","2024-08-04T10:26:16.038Z","Modified",{"cisa_kev":49,"cisa_ransomware":49,"cisa_vendor":9,"epss_severity":50,"epss_score":51,"severity":52,"severity_score":53,"severity_version":54,"severity_source":55,"severity_vector":56,"severity_status":47},false,"critical",0.60223,"high",9,"v2.0","nvd","AV:N/AC:L/Au:S/C:C/I:C/A:C",[58,66,70,76,82,87,91,96,100,105,109,113],{"url":59,"sources":60,"tags":62},"https://github.com/proftpd/proftpd/blob/master/RELEASE_NOTES",[61,55],"cve.org",[63,64,65],"X Refsource CONFIRM","Release Notes","Third Party Advisory",{"url":67,"sources":68,"tags":69},"https://github.com/proftpd/proftpd/issues/903",[61,55],[63,65],{"url":71,"sources":72,"tags":73},"https://lists.debian.org/debian-lts-announce/2020/02/msg00022.html",[61,55],[74,75,65],"Mailing List","X Refsource MLIST",{"url":77,"sources":78,"tags":79},"https://www.debian.org/security/2020/dsa-4635",[61,55],[80,81,65],"Vendor Advisory","X Refsource DEBIAN",{"url":83,"sources":84,"tags":85},"https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/XHO3S5WPRRP7VGKIAHLYQVEYW5HRYIJN/",[61,55],[80,86],"X Refsource FEDORA",{"url":88,"sources":89,"tags":90},"https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/VCUPRYSJR7XOM3HQ6H5M4OGDU7OHCHBF/",[61,55],[80,86],{"url":92,"sources":93,"tags":94},"http://lists.opensuse.org/opensuse-security-announce/2020-03/msg00002.html",[61,55],[80,95,74,65],"X Refsource SUSE",{"url":97,"sources":98,"tags":99},"https://lists.debian.org/debian-lts-announce/2020/03/msg00002.html",[61,55],[74,75,65],{"url":101,"sources":102,"tags":103},"https://security.gentoo.org/glsa/202003-35",[61,55],[80,104,65],"X Refsource GENTOO",{"url":106,"sources":107,"tags":108},"https://cert-portal.siemens.com/productcert/pdf/ssa-679335.pdf",[61,55],[63,65],{"url":110,"sources":111,"tags":112},"http://www.openwall.com/lists/oss-security/2021/08/25/1",[61,55],[74,75,65],{"url":114,"sources":115,"tags":116},"http://www.openwall.com/lists/oss-security/2021/09/06/2",[61,55],[74,75,65],[],{"date":119,"score":51,"percentile":120},"2026-06-04",0.98305,[122,126,129,131,133,135,137,139,142,145,148,150,153,155,157,161,164,167,170,173,176,178,180,182,185,188,190,192,195,198,201,203,205,207,209,211,213,215,217,219,221,224,226,228,231,233,236,238,242,244,246,248,250,252,255,257,260,263,265,268,270,273,275,278,280,283,285,288,291,293,296,298,301,303,306,309,312,315,318,320,322,324,327,329,332,335,337,340,342,344],{"date":123,"score":124,"percentile":125},"2025-11-04",0.6675,0.98464,{"date":127,"score":124,"percentile":128},"2025-11-05",0.98463,{"date":130,"score":124,"percentile":125},"2025-11-06",{"date":132,"score":124,"percentile":128},"2025-11-07",{"date":134,"score":124,"percentile":128},"2025-11-08",{"date":136,"score":124,"percentile":128},"2025-11-09",{"date":138,"score":124,"percentile":128},"2025-11-10",{"date":140,"score":124,"percentile":141},"2025-11-11",0.98462,{"date":143,"score":124,"percentile":144},"2025-11-12",0.98465,{"date":146,"score":124,"percentile":147},"2025-11-13",0.98467,{"date":149,"score":124,"percentile":147},"2025-11-14",{"date":151,"score":124,"percentile":152},"2025-11-15",0.98466,{"date":154,"score":124,"percentile":152},"2025-11-16",{"date":156,"score":124,"percentile":152},"2025-11-17",{"date":158,"score":159,"percentile":160},"2025-11-18",0.5019,0.97701,{"date":162,"score":159,"percentile":163},"2025-11-19",0.97702,{"date":165,"score":159,"percentile":166},"2025-11-20",0.97709,{"date":168,"score":124,"percentile":169},"2025-11-21",0.98461,{"date":171,"score":124,"percentile":172},"2025-11-22",0.98459,{"date":174,"score":124,"percentile":175},"2025-11-23",0.98457,{"date":177,"score":124,"percentile":175},"2025-11-24",{"date":179,"score":124,"percentile":172},"2025-11-25",{"date":181,"score":124,"percentile":172},"2025-11-26",{"date":183,"score":124,"percentile":184},"2025-11-27",0.9846,{"date":186,"score":124,"percentile":187},"2025-11-28",0.98458,{"date":189,"score":124,"percentile":172},"2025-11-29",{"date":191,"score":124,"percentile":187},"2025-11-30",{"date":193,"score":124,"percentile":194},"2025-12-01",0.98475,{"date":196,"score":124,"percentile":197},"2025-12-02",0.98477,{"date":199,"score":124,"percentile":200},"2025-12-03",0.98478,{"date":202,"score":124,"percentile":187},"2025-12-04",{"date":204,"score":124,"percentile":187},"2025-12-05",{"date":206,"score":124,"percentile":172},"2025-12-06",{"date":208,"score":124,"percentile":184},"2025-12-07",{"date":210,"score":124,"percentile":184},"2025-12-08",{"date":212,"score":124,"percentile":169},"2025-12-09",{"date":214,"score":124,"percentile":128},"2025-12-10",{"date":216,"score":124,"percentile":144},"2025-12-11",{"date":218,"score":124,"percentile":147},"2025-12-12",{"date":220,"score":124,"percentile":147},"2025-12-13",{"date":222,"score":124,"percentile":223},"2025-12-14",0.98468,{"date":225,"score":124,"percentile":147},"2025-12-15",{"date":227,"score":124,"percentile":223},"2025-12-16",{"date":229,"score":124,"percentile":230},"2025-12-17",0.9847,{"date":232,"score":124,"percentile":230},"2025-12-18",{"date":234,"score":124,"percentile":235},"2025-12-19",0.98471,{"date":237,"score":124,"percentile":230},"2025-12-20",{"date":239,"score":240,"percentile":241},"2025-12-21",0.66833,0.98476,{"date":243,"score":240,"percentile":241},"2025-12-22",{"date":245,"score":240,"percentile":241},"2025-12-23",{"date":247,"score":240,"percentile":241},"2025-12-24",{"date":249,"score":240,"percentile":197},"2025-12-25",{"date":251,"score":240,"percentile":241},"2025-12-26",{"date":253,"score":240,"percentile":254},"2025-12-27",0.98496,{"date":256,"score":240,"percentile":200},"2025-12-28",{"date":258,"score":240,"percentile":259},"2025-12-29",0.9848,{"date":261,"score":240,"percentile":262},"2025-12-30",0.98479,{"date":264,"score":240,"percentile":259},"2025-12-31",{"date":266,"score":240,"percentile":267},"2026-01-01",0.98495,{"date":269,"score":240,"percentile":267},"2026-01-02",{"date":271,"score":240,"percentile":272},"2026-01-03",0.98494,{"date":274,"score":240,"percentile":259},"2026-01-04",{"date":276,"score":240,"percentile":277},"2026-01-05",0.98481,{"date":279,"score":240,"percentile":277},"2026-01-06",{"date":281,"score":240,"percentile":282},"2026-01-07",0.98482,{"date":284,"score":240,"percentile":282},"2026-01-08",{"date":286,"score":240,"percentile":287},"2026-01-09",0.98484,{"date":289,"score":240,"percentile":290},"2026-01-10",0.98486,{"date":292,"score":240,"percentile":290},"2026-01-11",{"date":294,"score":240,"percentile":295},"2026-01-12",0.98485,{"date":297,"score":240,"percentile":287},"2026-01-13",{"date":299,"score":240,"percentile":300},"2026-01-14",0.98487,{"date":302,"score":240,"percentile":300},"2026-01-15",{"date":304,"score":240,"percentile":305},"2026-01-16",0.98488,{"date":307,"score":240,"percentile":308},"2026-01-17",0.9849,{"date":310,"score":240,"percentile":311},"2026-01-18",0.98491,{"date":313,"score":240,"percentile":314},"2026-01-19",0.98493,{"date":316,"score":240,"percentile":317},"2026-01-20",0.98492,{"date":319,"score":240,"percentile":314},"2026-01-21",{"date":321,"score":240,"percentile":272},"2026-01-22",{"date":323,"score":240,"percentile":254},"2026-01-23",{"date":325,"score":240,"percentile":326},"2026-01-24",0.98497,{"date":328,"score":240,"percentile":326},"2026-01-25",{"date":330,"score":240,"percentile":331},"2026-01-26",0.98499,{"date":333,"score":240,"percentile":334},"2026-01-27",0.985,{"date":336,"score":240,"percentile":334},"2026-01-28",{"date":338,"score":240,"percentile":339},"2026-01-29",0.98501,{"date":341,"score":240,"percentile":339},"2026-01-30",{"date":343,"score":240,"percentile":334},"2026-01-31",{"date":345,"score":240,"percentile":346},"2026-02-01",0.98511,[348],{"source":55,"cvss_v2_0":349,"cvss_v3_0":9,"cvss_v3_1":352,"cvss_v4_0":9},{"baseScore":53,"baseSeverity":9,"vectorString":56,"impactScore":350,"exploitabilityScore":351},10,8,{"baseScore":353,"baseSeverity":354,"vectorString":355,"impactScore":356,"exploitabilityScore":357},8.8,"HIGH","CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",9.8,7.2,[359,372,380,390,395,400,410],{"ecosystem":9,"name":360,"vendor":361,"product":362,"cpe_part":363,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":364},"debian linux","debian","debian_linux","o",[365,368,370],{"version":366,"is_range":49,"range_type":367,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"8.0","cpe",{"version":369,"is_range":49,"range_type":367,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"9.0",{"version":371,"is_range":49,"range_type":367,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"10.0",{"ecosystem":9,"name":373,"vendor":374,"product":373,"cpe_part":363,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":375},"fedora","fedoraproject",[376,378],{"version":377,"is_range":49,"range_type":367,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"30",{"version":379,"is_range":49,"range_type":367,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"31",{"ecosystem":9,"name":381,"vendor":382,"product":383,"cpe_part":384,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":385},"backports sle","opensuse","backports_sle","a",[386,388],{"version":387,"is_range":49,"range_type":367,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"15.0",{"version":389,"is_range":49,"range_type":367,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"15.0:sp1",{"ecosystem":9,"name":391,"vendor":382,"product":391,"cpe_part":363,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":392},"leap",[393],{"version":394,"is_range":49,"range_type":367,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"15.1",{"ecosystem":9,"name":396,"vendor":396,"product":396,"cpe_part":384,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":397},"proftpd",[398],{"version":399,"is_range":49,"range_type":367,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"1.3.7",{"ecosystem":9,"name":401,"vendor":402,"product":403,"cpe_part":363,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":404},"simatic net cp 1543-1 firmware","siemens","simatic_net_cp_1543-1_firmware",[405],{"version":406,"is_range":407,"range_type":367,"version_start":9,"version_start_type":9,"version_end":408,"version_end_type":409,"fixed_in":9},"lt3.0",true,"3.0","excluding",{"ecosystem":9,"name":411,"vendor":402,"product":412,"cpe_part":363,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":413},"simatic net cp 1545-1 firmware","simatic_net_cp_1545-1_firmware",[414],{"version":415,"is_range":49,"range_type":367,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"na"]