CVE-2006-2407

Stack-based buffer overflow in (1) WeOnlyDo wodSSHServer ActiveX Component 1.2.7 and 1.3.3 DEMO, as used in other products including (2) FreeSSHd 1.0.9 and (3) freeFTPd 1.0.10, allows remote attackers to execute arbitrary code via a long key exchange algorithm string.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:freeftpd:freeftpd:1.0.10:*:*:*:*:*:*:*
cpe:2.3:a:freesshd:freesshd:1.0.9:*:*:*:*:*:*:*
cpe:2.3:a:weonlydo:wodsshserver:1.2.7:*:*:*:*:*:*:*
cpe:2.3:a:weonlydo:wodsshserver:1.3.3_demo:*:*:*:*:*:*:*

History

No history.

Information

Published : 2006-05-16 10:02

Updated : 2024-02-04 16:52


NVD link : CVE-2006-2407

Mitre link : CVE-2006-2407

CVE.ORG link : CVE-2006-2407


JSON object : View

Products Affected

freeftpd

  • freeftpd

weonlydo

  • wodsshserver

freesshd

  • freesshd
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer