Record summary

CVE-2004-0069 has a selected CVSS score of 7.5; EIP currently links 1 catalogued exploit.

Description

Format string vulnerability in HD Soft Windows FTP Server 1.6 and earlier allows remote attackers to execute arbitrary code via format string specifiers in the username, which is processed by the wscanf function.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1

Proofs of concept

1

Catalogued exploits

ExploitDBHD Soft Windows FTP Server 1.5/1.6 - 'Username' Format StringExploitDB exploitby mandragoreNot analyzed1 file
ExploitDB

PoC details

References

5