vendor:
Quick FTP Pro
by:
Saint Patrick
N/A
CVSS
N/A
Stack Buffer Overflow
119
CWE
Product Name: Quick FTP Pro
Affected Version From: Quick FTP Pro 2.1
Affected Version To: Quick FTP Pro 2.1
Patch Exists: NO
Related CWE: CVE-2008-1610
CPE: N/A
Metasploit:
N/A
Other Scripts:
https://www.infosecmatter.com/metasploit-module-library/?mm=exploit/windows/tftp/quick_tftp_pro_mode, https://www.infosecmatter.com/nessus-plugin-library/?id=72618, https://www.infosecmatter.com/list-of-metasploit-windows-exploits-detailed-spreadsheet/, https://www.infosecmatter.com/nessus-plugin-library/?id=72215
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows Server 2000, Windows XP SP2
2008
Quick FTP Pro 2.1 Transfer-Mode Overflow
This module exploits a stack buffer overflow in the Quick TFTP Pro server product. MS Update KB926436 screws up the opcode address being used in oledlg.dll resulting in a DoS. This is a port of a sploit by Mati 'muts' Aharoni.
Mitigation:
No known mitigation or remediation for this vulnerability