>> WS_FTP Server FTP Commands Handling Remote Buffer Overflow Vulnerabilities
Title : WS_FTP Server FTP Commands Handling Remote Buffer Overflow Vulnerabilities VUPEN ID : VUPEN/ADV-2006-3655 CVE ID : CVE-2006-4847 - CVE-2006-5000 - CVE-2006-5001
Rated as : Moderate Risk
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2006-09-18
Technical Description
Multiple vulnerabilities have been identified in WS_FTP Server, which could be exploited by malicious users to execute arbitrary commands. These flaws are due to buffer overflow errors when processing overly long arguments passed to the "XCRC", "XSHA1", and "XMD5" commands, which could be exploited by authenticated attackers to compromise a vulnerable system.