PT-2012-5928 · Typsoft · Typsoft Ftp Server
Brock Haun
·
Published
2012-10-08
·
Updated
2013-01-26
·
CVE-2012-5329
CVSS v2.0
4.0
Medium
| Vector | AV:N/AC:L/Au:S/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
TYPSoft FTP Server version 1.1
Description
The issue allows remote authenticated users to cause a denial of service, resulting in an application crash. This is achieved by sending a long string in an APPE command.
Recommendations
For TYPSoft FTP Server version 1.1, consider restricting access to the APPE command until a patch is available to prevent potential denial of service attacks. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Typsoft Ftp Server