vendor:
FTP Commander
by:
Un_N0n
7.8
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: FTP Commander
Affected Version From: 08.02
Affected Version To: 08.02
Patch Exists: Yes
Related CWE: N/A
CPE: a:internet-soft:ftp_commander
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows 7 x32
2015
FTP Commander ‘Costum Command’ SEH Over-Write(Buffer Overflow)
FTP Commander is vulnerable to a buffer overflow vulnerability when a user enters a long string of characters into the 'Costum Command' input box. This can lead to a SEH overwrite, allowing an attacker to execute arbitrary code on the vulnerable system.
Mitigation:
The vendor has released a patch to address this vulnerability.