Computer Security
[EN] securityvulns.ru
no-pyccku



DreamFTP formatstring bug
Published:09.02.2004
Source:BUGTRAQ
SecurityVulns ID:3426
Type:remote
Level:5/10
Description:Format string bug in username.
Affected:BOLINTECH : DreamFTP 1.02
CVE:CVE-2007-0338 (Heap-based buffer overflow in Dream FTP Server allows remote attackers to execute arbitrary code via a USER command with a large number of format string specifiers, which triggers the overflow during processing of the Server Log.)
Original documentdocumentbadpack3t, [Full-Disclosure] DreamFTP Server 1.02 Buffer Overflow (09.02.2004)
Files:Format String Vulnerability in DreamFTP exploit
 BolinTech DreamFTP USER buffer overflow
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
 



Рейтинг@Mail.ru