20031014 Another ProFTPd root EXPLOIT ?mailing list
http://lists.grok.org.uk/pipermail/full-disclosure/2003-October/012072.html CVE-2003-0831
ProFTPd 1.2.9 rc2 - '.ASCII' File Remote Code Execution (1)
Record summary
CVE-2003-0831 has a selected CVSS score of 9.0; EIP currently links 3 catalogued exploits.
Description
ProFTPD 1.2.7 through 1.2.9rc2 does not properly translate newline characters when transferring files in ASCII mode, which allows remote attackers to execute arbitrary code via a buffer overflow using certain files.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 3
Proofs of concept
3Catalogued exploits
ExploitDBProFTPd 1.2.9 rc2 - '.ASCII' File Remote Code Execution (1)ExploitDB exploitby bkbllNot analyzed1 file
ExploitDBProFTPd 1.2.7 < 1.2.9rc2 - Remote Code Execution / Brute ForceExploitDB exploitby HaggisNot analyzed1 file
ExploitDBProFTPd 1.2.7/1.2.8 - '.ASCII' File Transfer Buffer OverrunExploitDB exploitby netrisNot analyzed1 file
References
1020030924 [slackware-security] ProFTPD Security Advisory (SSA:2003-259-02)mailing list
http://marc.info/?l=bugtraq&m=106441655617816&w=2 20031013 Remote root exploit for proftpd \n bugmailing list
http://marc.info/?l=bugtraq&m=106606885611269&w=2 9829Third-party advisory
http://secunia.com/advisories/9829 VU#405348Third-party advisory
http://www.kb.cert.org/vuls/id/405348 MDKSA-2003:095Vendor advisory
http://www.mandriva.com/security/advisories?name=MDKSA-2003:095 20030923 ProFTPD ASCII File Remote Compromise VulnerabilityThird-party advisory
http://xforce.iss.net/xforce/alerts/id/154 proftpd-ascii-xfer-newline-bo(12200)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/12200 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2003-0831 107exploit
https://www.exploit-db.com/exploits/107