Press CTRL-D to bookmark us
Welcome Guest Login / Register / Members
Search in  
Top Submit newsSubscribe
Communication | Computer Crime | Digital Audio, Video, Photo | General News | Hardware | Internet | Mobile | PDA | Security | Software | Vulnerability |


Previous articleBack to news listNext article
 

 Sponsored links

Want to become one of our authors and see your work published on ALLSeek.iNFO ?
 
 Enceladus Server Suite FTP Command Buffer Overflows Let Remote Authenticated Users Crash the FTP Service
Categorie: Vulnerability
Posted: 2003-09-16 by ReCall
Views: 361
Source: Click here
 
Current Rating: Not rated
Poor Best
 Details
Description: Several buffer overflow vulnerabilities were reported in Enceladus Server Suite. A remote authenticated user (including an anonymous FTP user) can cause the target FTP service to crash.

Dr_insane reported that a remote user can connect to the FTP service, authenticate, and send various commands to trigger the buffer overflows and cause the FTP service to crash.

Some demonstration exploit commands are provided:

CWD 344 * A

Stat 340 * A

mkd 270 * A

xmkd 270 * A

rmd 270 * A

nlst 340 * A

It is reported that a specially crafted NLST command will also cause the included HTTP daemon to crash.

Impact: A remote authenticated user can cause the FTP service and the HTTP service to crash.

Solution: No solution was available at the time of this entry.
 
Syndication
Permalink Email this

The URI to TrackBack this entry is:
http://allseek.info/news/trackback.php?id=436

User comments (post your comments here)

Only registerd members can post comments and articles
 

Previous articleBack to news listNext article
 



InterJOB.su

SpyLOG Page Rank Checker
LAST QUERIES