FileZilla Client 3.63.1 contains a DLL hijacking vulnerability that allows attackers to execute malicious code by placing a crafted TextShaping.dll in the application directory. Attackers can generate a reverse shell payload using msfvenom and replace the missing DLL to achieve remote code execution when the application launches.
References
Configurations
No configuration.
History
No history.
Information
Published : 2025-12-19 21:15
Updated : 2025-12-23 14:51
NVD link : CVE-2023-53959
Mitre link : CVE-2023-53959
CVE.ORG link : CVE-2023-53959
JSON object : View
Products Affected
No product.
CWE
CWE-427
Uncontrolled Search Path Element
