MEDIUM
Buffer overflow in WFTPD Server 3.23 allows remote attackers to execute arbitrary code via long SIZE commands
Published Aug 24, 2006
6.5
MEDIUMCVSS 2.0
EPSS 62.15%
Description
Buffer overflow in WFTPD Server 3.23 allows remote attackers to execute arbitrary code via long SIZE commands.
Affected products
No data.
- 3.23
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (0)
No CWE recorded.
References (9)
- http://packetstormsecurity.org/0608-exploits/wftpd_exp.c x_refsource_MISC
- http://secunia.com/advisories/21547 third-party-advisoryx_refsource_SECUNIA
- http://securitytracker.com/id?1016723 vdb-entryx_refsource_SECTRACKExploit
- http://www.osvdb.org/28134 vdb-entryx_refsource_OSVDB
- http://www.securityfocus.com/bid/19617 vdb-entryx_refsource_BIDExploit
- http://www.vupen.com/english/advisories/2006/3357 vdb-entryx_refsource_VUPEN
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2006-4306 Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/28523 vdb-entryx_refsource_XF
- https://www.exploit-db.com/exploits/2233 exploitx_refsource_EXPLOIT-DB
| Link | Providers | Tags |
|---|---|---|
| http://packetstormsecurity.org/0608-exploits/wftpd_exp.c | x_refsource_MISC | |
| http://secunia.com/advisories/21547 | third-party-advisoryx_refsource_SECUNIA | |
| http://securitytracker.com/id?1016723 | vdb-entryx_refsource_SECTRACKExploit | |
| http://www.osvdb.org/28134 | vdb-entryx_refsource_OSVDB | |
| http://www.securityfocus.com/bid/19617 | vdb-entryx_refsource_BIDExploit | |
| http://www.vupen.com/english/advisories/2006/3357 | vdb-entryx_refsource_VUPEN | |
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2006-4306 | Advisory | |
| https://exchange.xforce.ibmcloud.com/vulnerabilities/28523 | vdb-entryx_refsource_XF | |
| https://www.exploit-db.com/exploits/2233 | exploitx_refsource_EXPLOIT-DB |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Aug 24, 2006
Updated Aug 7, 2024
Reserved Aug 23, 2006
Link CVE-2006-4318
CISA Vulnrichment
Updated n/a
ENISA EUVD
EUVD-2006-4306 Assigner mitre
Published Aug 24, 2006
Updated Aug 7, 2024
Exploited since n/a
Link EUVD-2006-4306