CVE-2004-2081
Sami FTP Server 1.1.3 - Denial of Service via CD Command with Tilde or Dot-Dot
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2004-2081. PoCs published by intuit e.b..
AI-analyzed exploit summary This exploit demonstrates a denial of service vulnerability in Sami FTP Server by sending unexpected FTP commands ('cd ~' and 'cd /../') that cause the pmsystem.exe executable to crash with a fatal exception.
Description
The samiftp.dll library in Sami FTP Server 1.1.3 allows local users to cause a denial of service (pmsystem.exe crash) by issuing (1) a CD command with a tilde (~) character or dot dot (/../) or (2) a GET command for an unavailable file.
Exploits (1)
This exploit demonstrates a denial of service vulnerability in Sami FTP Server by sending unexpected FTP commands ('cd ~' and 'cd /../') that cause the pmsystem.exe executable to crash with a fatal exception.