vendor:
Rumba FTP Client
by:
sinn3r
9,3
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: Rumba FTP Client
Affected Version From: 4.2.0.0
Affected Version To: 4.2.0.0
Patch Exists: YES
Related CWE: N/A
CPE: a:netmanage:rumba_ftp_client
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows
2011
Rumba FTP Client FTPSFtp.dll v4.2.0.0 OpenSession() Buffer Overflow by sinn3r
A buffer overflow vulnerability exists in Rumba FTP Client FTPSFtp.dll v4.2.0.0 when the OpenSession() function is called with an overly long argument. This can be exploited to execute arbitrary code by tricking a user into visiting a malicious web page.
Mitigation:
Upgrade to the latest version of Rumba FTP Client.