PT-2006-1426 · Homeftp · Homeftp

Cvh

·

Published

2006-01-22

·

Updated

2018-10-19

·

CVE-2006-0355

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions HomeFtp version 1.1
Description The issue allows remote attackers to cause a denial of service. This can be achieved by sending a long USER command combined with a long PASS command and an NLST command.
Recommendations For HomeFtp version 1.1, consider restricting access to the NLST command as a temporary workaround until a patch is available. Additionally, limiting the length of the USER and PASS commands may help minimize the risk of exploitation.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2006-0355

Affected Products

Homeftp