Computer Security
[EN] securityvulns.ru
no-pyccku



IPSwitch WS_FTP unfilterd shell characters security vulnerability
Published:28.01.2007
Source:BUGTRAQ
SecurityVulns ID:7121
Type:remote
Level:6/10
Description:Shell charCters problem on SCP files parsing.
Affected:IPSWITCH : WS_FTP 2007
CVE:CVE-2007-0665 (Format string vulnerability in the SCP module in Ipswitch WS_FTP 2007 Professional might allow remote attackers to execute arbitrary commands via format string specifiers in the filename, related to the SHELL WS_FTP script command.)
Original documentdocumentMichal Bucko, WS_FTP 2007 Professional SCP handling format string vulnerability (28.01.2007)
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
 



Ðåéòèíã@Mail.ru