{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-04-16T14:24:24.432","vulnerabilities":[{"cve":{"id":"CVE-2023-6950","sourceIdentifier":"prodsec@nozominetworks.com","published":"2024-04-02T11:15:51.243","lastModified":"2026-04-15T00:35:42.020","vulnStatus":"Deferred","cveTags":[{"sourceIdentifier":"prodsec@nozominetworks.com","tags":["disputed"]}],"descriptions":[{"lang":"en","value":"An Improper Input Validation vulnerability affecting the FTP service running on the DJI Mavic Mini 3 Pro could allow an attacker to craft a malicious packet containing a malformed path provided to the FTP SIZE command that leads to a denial-of-service attack of the FTP service itself."},{"lang":"es","value":"** EN DISPUTA ** Una vulnerabilidad de validación de entrada incorrecta que afecta el servicio FTP que se ejecuta en el DJI Mavic Mini 3 Pro podría permitir a un atacante crear un paquete malicioso que contenga una ruta mal formada proporcionada el comando FTP TAMAÑO que conduce a un ataque de denegación de servicio del propio servicio FTP."}],"metrics":{"cvssMetricV31":[{"source":"prodsec@nozominetworks.com","type":"Secondary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:A/AC:L/PR:L/UI:R/S:U/C:N/I:N/A:L","baseScore":3.0,"baseSeverity":"LOW","attackVector":"ADJACENT_NETWORK","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"REQUIRED","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"LOW"},"exploitabilityScore":1.5,"impactScore":1.4}]},"weaknesses":[{"source":"prodsec@nozominetworks.com","type":"Secondary","description":[{"lang":"en","value":"CWE-1286"}]}],"references":[{"url":"https://www.nozominetworks.com/labs/vulnerability-advisories-cve-2023-6950/","source":"prodsec@nozominetworks.com"},{"url":"https://www.nozominetworks.com/labs/vulnerability-advisories-cve-2023-6950/","source":"af854a3a-2127-422b-91ae-364da2661108"}]}}]}