Computer Security
[EN] securityvulns.ru
no-pyccku



IPSwitch WS_FTP unfilterd shell characters security vulnerability
Published:28.01.2007
Source:BUGTRAQ
SecurityVulns ID:7121
Type:remote
Level:6/10
Description:Shell charCters problem on SCP files parsing.
Affected:IPSWITCH : WS_FTP 2007
CVE:CVE-2007-0665 (Format string vulnerability in the SCP module in Ipswitch WS_FTP 2007 Professional might allow remote attackers to execute arbitrary commands via format string specifiers in the filename, related to the SHELL WS_FTP script command.)
Original documentdocumentMichal Bucko, WS_FTP 2007 Professional SCP handling format string vulnerability (28.01.2007)
Discuss:Read or add your comments to this news (0 comments)


Show Threads
Messages
 
Login:* (Register)
Password:*
(private) To:
(reply) Subject:*
Text:

Main Forum (Eng)

General security questions not appropriate for another forums.
3proxy Forum (Eng)

All 3proxy question must be posted to this forum.
Bugs, Vulnerabilities, PoCs and Exploits (Eng)

All vulnerability related questions, vulnerability digging and exploit creation.
Windows programming and administration (Eng)

Administering Windows and application development.
Unix programming and administation (Eng)

Administering Unix and application development.
Test forum

Please post all test messages here. All test messages from different forums will be deteted.
Main Forum (Rus)
3proxy Forum (Rus)
Bugs, Vulnerabilities, PoCs and Exploits (Rus)
Windows programming and administration (Rus)
Unix programming and administation (Rus)
About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
 



Ðåéòèíã@Mail.ru