vendor:
Personal FTP server
by:
Sud0
7,5
CVSS
HIGH
Remote Code Execution
119
CWE
Product Name: Personal FTP server
Affected Version From: 1.0.0
Affected Version To: 1.0.0
Patch Exists: YES
Related CWE: N/A
CPE: a:edisplay:personal_ftp_server:1.0.0
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows XP SP3
2010
eDisplay Personal FTP server 1.0.0 Multiple Post-Authentication Stack BOF
eDisplay Personal FTP server 1.0.0 is vulnerable to a stack-based buffer overflow vulnerability when sending an overly long string to the RMD command. An attacker can exploit this vulnerability to execute arbitrary code in the context of the application.
Mitigation:
Upgrade to the latest version of eDisplay Personal FTP server 1.0.0