PT-2006-1508 · Sami · Sami Ftp Server
N30M1Nd
·
Published
2006-01-26
·
Updated
2018-10-19
·
CVE-2006-0441
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Sami FTP Server version 2.0.1
Description
The issue is a stack-based buffer overflow that allows remote attackers to execute arbitrary code. This is achieved by sending a long USER command, which triggers the overflow when the log is viewed.
Recommendations
For Sami FTP Server version 2.0.1, consider disabling the logging feature for the USER command as a temporary workaround until a patch is available. Restrict access to the server to minimize the risk of exploitation.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Sami Ftp Server