11002Third-party advisory
http://secunia.com/advisories/11002 CVE-2004-2675
ArGoSoft FTP Server 1.0/1.2/1.4 - Multiple Vulnerabilities
Record summary
CVE-2004-2675 has a selected CVSS score of 6.8; EIP currently links 1 catalogued exploit.
Description
ArGoSoft FTP Server before 1.4.1.6 allows remote authenticated users to cause a denial of service (crash) via a SITE PASS command with a long password parameter, which causes the database to be corrupted.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBArGoSoft FTP Server 1.0/1.2/1.4 - Multiple VulnerabilitiesExploitDB exploitby Beyond SecurityNot analyzed1 file
References
7argosoft.comConfirmation
http://www.argosoft.com/rootpages/FtpServer/ChangeList.aspx 11332vdb entry
http://www.osvdb.org/11332 securiteam.com
http://www.securiteam.com/windowsntfocus/5RP010KCAO.html 9770vdb entry
http://www.securityfocus.com/bid/9770 argosoftftp-site-pass-dos(15412)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/15412 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2004-2675