PT-2004-3310 · Slimftpd · Slimftpd

Published

2004-12-31

·

Updated

2024-02-14

·

CVE-2004-2418

CVSS v2.0

7.2

High

VectorAV:L/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions: SlimFTPd versions 3.15 and earlier
Description: The issue allows local users to execute arbitrary code via a long command. Commands such as CWD, STOR, MKD, and STAT can be exploited.
Recommendations: For SlimFTPd versions 3.15 and earlier, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Related Identifiers

CVE-2004-2418

Affected Products

Slimftpd