CVE-2004-1627
Ability Server 2.25, 2.32, 2.34 - Remote Code Execution via Long APPE Command
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2004-1627. PoCs published by KaGra.
AI-analyzed exploit summary This exploit targets a buffer overflow vulnerability in Ability FTP Server 2.34 via the APPE command. It sends a crafted payload with a JMP ESP address and shellcode to achieve remote code execution, binding a shell to port 4444.
Description
Buffer overflow in Ability Server 2.25, 2.32, 2.34, and possibly other versions, allows remote attackers to execute arbitrary code via a long APPE command.
Exploits (1)
This exploit targets a buffer overflow vulnerability in Ability FTP Server 2.34 via the APPE command. It sends a crafted payload with a JMP ESP address and shellcode to achieve remote code execution, binding a shell to port 4444.