PT-2004-1280 · Hd Soft · Hd Soft Windows Ftp Server

Peter Winter-Smith

·

Published

2004-01-15

·

Updated

2016-10-18

·

CVE-2004-0069

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions HD Soft Windows FTP Server versions 1.6 and earlier
Description The issue allows remote attackers to execute arbitrary code via format string specifiers in the username, which is processed by the wscanf function.
Recommendations For HD Soft Windows FTP Server versions 1.6 and earlier, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2004-0069

Affected Products

Hd Soft Windows Ftp Server