header-logo
Suggest Exploit
vendor:
BFTelnet
by:
SecurityFocus
7.5
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: BFTelnet
Affected Version From: BFTelnet 1.0
Affected Version To: BFTelnet 1.0
Patch Exists: YES
Related CWE: N/A
CPE: o:byte_fusion:bftelnet
Metasploit: N/A
Other Scripts: N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References: N/A
Nuclei Metadata: N/A
Platforms Tested: Windows NT
1999

BFTelnet Buffer Overflow

BFTelnet, a telnet server for Windows NT by Byte Fusion, will crash if a user name of 3090 or more characters is supplied. An attacker can exploit this vulnerability by sending a username of 3090 or more characters to the telnet server.

Mitigation:

Upgrade to the latest version of BFTelnet.
Source

Exploit-DB raw data:

source: https://www.securityfocus.com/bid/771/info

BFTelnet, a telnet server for Windows NT by Byte Fusion, will crash if a user name of 3090 or more characters is supplied. 


telnet victim.com
Login: [3090 charcter string]