CVE-2026-102727

Summary

FTP Passive Data Connection Not Bound to the Authenticated Control Peer

Affected Software

VendorProductVersion RangeStatus
Eclipse FoundationNetX Duo0 <= 6.5.1.202602affected

Weaknesses

  • CWE-923: CWE-923 Improper Restriction of Communication Channel to Intended Endpoints

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: no
    • Technical Impact: partial

References