vendor:
Xynph 1.0
by:
freak_out
7.5
CVSS
HIGH
Denial of Service
400
CWE
Product Name: Xynph 1.0
Affected Version From: 1
Affected Version To: 1
Patch Exists: Yes
Related CWE: N/A
CPE: a:xynph:xynph:1.0
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows XP SP3
2011
Xynph 1.0 USER Denial of Service Exploit
This exploit sends a large amount of data to the USER command of the Xynph 1.0 FTP server, causing it to crash. The exploit is written in Python and can be run from the command line.
Mitigation:
Ensure that the FTP server is running the latest version of Xynph 1.0 and that all security patches have been applied.