CVE-2003-1206

Format string vulnerability in Crob FTP Server 2.60.1 allows remote attackers to cause a denial of service (crash) via "%s" or "%n" sequences in (1) the username during login, or other FTP commands such as (2) dir.
Configurations

Configuration 1 (hide)

cpe:2.3:a:crob:crob_ftp_server:2.60.1:*:*:*:*:*:*:*

History

20 Nov 2024, 23:46

Type Values Removed Values Added
References () http://marc.info/?l=bugtraq&m=106019292611151&w=2 - () http://marc.info/?l=bugtraq&m=106019292611151&w=2 -
References () http://secunia.com/advisories/8929 - Patch, Vendor Advisory () http://secunia.com/advisories/8929 - Patch, Vendor Advisory
References () http://www.crob.net/studio/ftpserver/ - () http://www.crob.net/studio/ftpserver/ -
References () http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2003-08/0087.html - Exploit () http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2003-08/0087.html - Exploit
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/12834 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/12834 -

Information

Published : 2003-06-03 04:00

Updated : 2025-04-03 01:03


NVD link : CVE-2003-1206

Mitre link : CVE-2003-1206

CVE.ORG link : CVE-2003-1206


JSON object : View

Products Affected

crob

  • crob_ftp_server