vendor:
FTP Navigator
by:
Chris Inzinga
5
CVSS
MEDIUM
Denial of Service (DoS)
400
CWE
Product Name: FTP Navigator
Affected Version From: 08.03
Affected Version To: 08.03
Patch Exists: NO
Related CWE:
CPE: a:internet-soft:ftp_navigator:8.03
Platforms Tested: Windows 7 SP1 (x86)
2019
FTP Navigator 8.03 – ‘Custom Command’ Denial of Service (SEH)
The FTP Navigator 8.03 software is vulnerable to a denial of service (DoS) attack when a specially crafted payload is sent to the 'Custom Command' input box. This can cause the program to crash, overwriting the Structured Exception Handler (SEH) and potentially leading to remote code execution.
Mitigation:
To mitigate this vulnerability, it is recommended to update to a patched version of FTP Navigator or use an alternative FTP client.