vendor:
Net-ftpd
by:
Sergio 'shadown' Alvarez
9.8
CVSS
CRITICAL
Buffer Overflow
119
CWE
Product Name: Net-ftpd
Affected Version From: 4.2.2002
Affected Version To: 4.2.2002
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested:
Net-ftpd 4.2.2 user autentication b0f exploit (0day)
This exploit targets a buffer overflow vulnerability in Net-ftpd 4.2.2. It allows an attacker to execute arbitrary code on the target system by sending a specially crafted request. The exploit code is written in Python and was created by Sergio 'shadown' Alvarez.
Mitigation:
It is recommended to update to a patched version of Net-ftpd.