PT-2005-1736 · Argosoft · Argosoft Ftp Server
Jerome Athias
·
Publicado
2005-03-08
·
Atualizado
2018-10-19
·
CVE-2005-0696
CVSS v2.0
7.5
Alta
| Vetor | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
ArGoSoft FTP Server versions 1.4.2.8 through 1.4.3.5
Description
The issue allows remote authenticated users to execute arbitrary code via a long DELE command, which is a type of buffer overflow. This can lead to unauthorized access and control of the system.
Recommendations
For versions 1.4.2.8 through 1.4.3.5, consider disabling the DELE command functionality until a patch is available to prevent exploitation.
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Argosoft Ftp Server