Previous articleBack to news listNext article |
Sponsored links |
Want to become one of our authors and see your work published on ALLSeek.iNFO ? |
| Enceladus Server Suite FTP Command Buffer Overflows Let Remote Authenticated Users Crash the FTP Service |
|---|
Categorie: Vulnerability Posted: 2003-09-16 by ReCall Views: 361 Source: Click here | Current Rating: Not rated
|
|
| Details |
|---|
Description: Several buffer overflow vulnerabilities were reported in Enceladus Server Suite. A remote authenticated user (including an anonymous FTP user) can cause the target FTP service to crash.
Dr_insane reported that a remote user can connect to the FTP service, authenticate, and send various commands to trigger the buffer overflows and cause the FTP service to crash.
Some demonstration exploit commands are provided:
CWD 344 * A
Stat 340 * A
mkd 270 * A
xmkd 270 * A
rmd 270 * A
nlst 340 * A
It is reported that a specially crafted NLST command will also cause the included HTTP daemon to crash.
Impact: A remote authenticated user can cause the FTP service and the HTTP service to crash.
Solution: No solution was available at the time of this entry. |
| Syndication |
|---|
Permalink Email this
The URI to TrackBack this entry is: http://allseek.info/news/trackback.php?id=436
|
| User comments (post your comments ) |
|---|
Only registerd members can post comments and articles |
|
Previous articleBack to news listNext article |