vendor:
W3Filer
by:
r0ut3r
7.5
CVSS
HIGH
Buffer Overflow
120
CWE
Product Name: W3Filer
Affected Version From: 2.1.2003
Affected Version To: 2.1.2003
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested:
2007
W3Filer Buffer Overflow Vulnerability
If the client receives a large banner when attempting to send a file, the application will freeze or crash with an exception report. The EIP is overwritten with A's. Version 3.1.3 is not vulnerable.
Mitigation:
Update to version 3.1.3 or later.