CVE-2005-2961

Buffer overflow in the get_string_ahref function for ProZilla 1.3.7.4 and possibly earlier, with the -ftpsearch option enabled, allows remote servers to execute arbitrary code via a search response with a crafted string in the HREF field of an <A> tag.
Configurations

Configuration 1 (hide)

cpe:2.3:a:prozilla:prozilla_download_accelerator:1.3.7.4:*:*:*:*:*:*:*

History

21 Nov 2024, 00:00

Type Values Removed Values Added
References () http://secunia.com/advisories/17021/ - Vendor Advisory () http://secunia.com/advisories/17021/ - Vendor Advisory
References () http://secunia.com/advisories/17035 - () http://secunia.com/advisories/17035 -
References () http://www.debian.org/security/2005/dsa-834 - Patch, Vendor Advisory () http://www.debian.org/security/2005/dsa-834 - Patch, Vendor Advisory
References () http://www.securityfocus.com/bid/14993 - () http://www.securityfocus.com/bid/14993 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/22491 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/22491 -

Information

Published : 2005-10-05 19:02

Updated : 2024-11-21 00:00


NVD link : CVE-2005-2961

Mitre link : CVE-2005-2961

CVE.ORG link : CVE-2005-2961


JSON object : View

Products Affected

prozilla

  • prozilla_download_accelerator