CVE-2002-0608

Matu FTP Client 1.74 - Remote Code Execution via Long FTP Banner

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2002-0608. PoCs published by Kanatoko.

AI-analyzed exploit summary This exploit targets a stack-based buffer overflow in Matu FTP Client 1.74 by sending an excessively long '220' response. It includes shellcode to spawn 'notepad.exe' and is designed to run under inetd.

Description

Buffer overflow in Matu FTP client 1.74 allows remote FTP servers to execute arbitrary code via a long "220" banner.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Kanatoko · perlremotewindows
https://www.exploit-db.com/exploits/21410

This exploit targets a stack-based buffer overflow in Matu FTP Client 1.74 by sending an excessively long '220' response. It includes shellcode to spawn 'notepad.exe' and is designed to run under inetd.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: Matu FTP Client 1.74
No auth needed
Prerequisites: Vulnerable Matu FTP Client 1.74 · Control over a malicious FTP server
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (3)

Core 3
Core References
Exploit, Vendor Advisory mailing-list x_refsource_bugtraq
http://archives.neohapsis.com/archives/bugtraq/2002-04/0310.html
Exploit, Vendor Advisory vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/4572
Vendor Advisory vdb-entry x_refsource_xf
http://www.iss.net/security_center/static/8911.php

Scores

EPSS 0.0425
EPSS Percentile 89.8%

Details

Status published
Products (1)
matu/matu_ftp 1.74
Published Jun 18, 2002
Tracked Since Feb 18, 2026