PT-2007-1286 · Tiny · Tiny Ftpd

[Oo]

·

Published

2007-02-12

·

Updated

2017-10-11

·

CVE-2006-7007

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Tiny FTPd versions 1.4 and earlier
Description A buffer overflow issue allows remote attackers to cause a denial of service, resulting in the daemon crashing, by sending a long USER command.
Recommendations For Tiny FTPd versions 1.4 and earlier, consider updating to a version that is not affected by this issue, as a temporary workaround, restrict access to the USER command to minimize the risk of exploitation.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2006-7007

Affected Products

Tiny Ftpd