WFTPD Pro Administrative Control Panel Bug Lets Remote Authenticated Users Crash the GUI
Categorie: Vulnerability Posted: 2004-03-18 by ReCall Views: 445 Source: Click here
Current Rating: Not rated
Details
Description: A vulnerability was reported in WFTPD Pro. A remote authenticated user can cause the administrative interface to crash.
SecuriTeam reported that a remote authenticated user can send a long value of approximately 300 bytes as a parameter to almost all FTP commands to cause the active administrative interface applet to crash.
STORM is credited with discovering this flaw.
Impact: A remote user can cause the administrative interface to crash.
Solution: The vendor has released a fixed version (3.21 Release 3), available at: