PT-2006-7226 · Sambar · Sambar Server

Rgod

·

Published

2006-12-18

·

Updated

2017-10-19

·

CVE-2006-6624

CVSS v2.0

4.0

Medium

VectorAV:N/AC:L/Au:S/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions Sambar Server version 6.4
Description The issue allows remote authenticated users to cause a denial of service, resulting in an application crash. This is achieved by sending a long series of "./" sequences in the SIZE command to the FTP Server.
Recommendations For Sambar Server version 6.4, consider restricting access to the FTP Server or limiting the length of commands to prevent the denial of service. As a temporary workaround, restrict the use of the SIZE command until a patch is available.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2006-6624

Affected Products

Sambar Server