vendor:
WarFTP
by:
Umesh Wanve
7.5
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: WarFTP
Affected Version From: 1.65
Affected Version To: 1.65
Patch Exists: NO
Related CWE:
CPE: a:jgaa:warftp:1.65
Platforms Tested: Windows 2000 SP4 Server, Windows 2000 SP4 Professional
2007
WarFTP 1.65 (USER) Remote Buffer Overflow SEH overflow Exploit
This exploit takes advantage of a buffer overflow vulnerability in the WarFTP 1.65 (USER) component. It overwrites the SEH handler to execute arbitrary code. The exploit has been tested on Windows 2000 SP4 Server and Windows 2000 SP4 Professional.
Mitigation:
Apply the latest patches and updates for WarFTP.