CVE-2005-0312
WarFTPD 1.82 RC9 - Authenticated Denial of Service via CWD Command
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2005-0312. PoCs published by MC.Iglo.
AI-analyzed exploit summary This Perl script exploits a denial-of-service vulnerability in War FTP Daemon 1.82.00-RC9 by sending a malformed CWD command with a payload of repeated format specifiers, causing the service to crash.
Description
WarFTPD 1.82 RC9, when running as an NT service, allows remote authenticated users to cause a denial of service (access violation) via a CWD command with a crafted pathname, as demonstrated using a large string of "%s" sequences, possibly indicating a format string vulnerability.
Exploits (1)
This Perl script exploits a denial-of-service vulnerability in War FTP Daemon 1.82.00-RC9 by sending a malformed CWD command with a payload of repeated format specifiers, causing the service to crash.