vendor:
WS_FTP Home/WS_FTP Professional FTP Client
by:
milw0rm.com
9
CVSS
CRITICAL
Format String vulnerability
N/A
CWE
Product Name: WS_FTP Home/WS_FTP Professional FTP Client
Affected Version From: N/A
Affected Version To: N/A
Patch Exists: NO
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows
2008
Ipswitch WS_FTP Home/WS_FTP Professional FTP Client Remote Format String vulnerability
This vulnerability allows an attacker to gain full control over EAX/ECX by exploiting a buffer overflow in the FTP server message response (4100 chars answer --> done).
Mitigation:
N/A