Format string vulnerability in Crob FTP Server 2.60.1 allows remote attackers to cause a denial of service (crash) via "%s" or "%n" sequences in (1) the username during login, or other FTP commands such as (2) dir.
References
Configurations
History
20 Nov 2024, 23:46
Type | Values Removed | Values Added |
---|---|---|
References | () http://marc.info/?l=bugtraq&m=106019292611151&w=2 - | |
References | () http://secunia.com/advisories/8929 - Patch, Vendor Advisory | |
References | () http://www.crob.net/studio/ftpserver/ - | |
References | () http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2003-08/0087.html - Exploit | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/12834 - |
Information
Published : 2003-06-03 04:00
Updated : 2025-04-03 01:03
NVD link : CVE-2003-1206
Mitre link : CVE-2003-1206
CVE.ORG link : CVE-2003-1206
JSON object : View
Products Affected
crob
- crob_ftp_server
CWE