vendor:
Open&Compact Ftp Server
by:
Ma3sTr0-Dz
7.5
CVSS
HIGH
Remote Denial of Service
284
CWE
Product Name: Open&Compact Ftp Server
Affected Version From: Open&Compact Ftp Server 1.2
Affected Version To: Open&Compact Ftp Server 1.2
Patch Exists: NO
Related CWE:
CPE: a:open&compact_ftp_server:1.2
Platforms Tested:
2010
Open&Compact Ftp Server 1.2 “PORT” command Remote Denial of Service
The Open&Compact Ftp Server 1.2 is vulnerable to a remote denial of service attack. By sending a specially crafted "PORT" command, an attacker can cause the server to crash, resulting in a denial of service condition.
Mitigation:
The vendor has not released a patch for this vulnerability. It is recommended to use a different FTP server software that is not vulnerable to this attack.