Exploitation Summary
EIP tracks 1 public exploit for CVE-2000-1027. PoCs published by Fabio Pietrosanti.
AI-analyzed exploit summary This exploit targets a vulnerability in Cisco PIX firewall firmware versions 5.2(4) and 5.2(2) by repeatedly sending PASV commands during an FTP session to disclose internal IP addresses. The script automates the process of sending PASV commands in a loop to trigger the information leak.
Description
Cisco Secure PIX Firewall 5.2(2) allows remote attackers to determine the real IP address of a target FTP server by flooding the server with PASV requests, which includes the real IP address in the response when passive mode is established.
Exploits (1)
This exploit targets a vulnerability in Cisco PIX firewall firmware versions 5.2(4) and 5.2(2) by repeatedly sending PASV commands during an FTP session to disclose internal IP addresses. The script automates the process of sending PASV commands in a loop to trigger the information leak.