CVE-2005-2767
LeapFTP - Buffer Overflow via Long Host String in Site Queue File
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2005-2767. PoCs published by Sowhat.
AI-analyzed exploit summary This exploit leverages a buffer overflow vulnerability in LeapFTP by providing a malformed .lsq file with an excessively long HOST field. The overflow can lead to remote code execution in the context of the user running the application.
Description
Buffer overflow in LeapFTP allows remote attackers to execute arbitrary code via a long Host string in a Site Queue (.lsq) file.
Exploits (1)
exploitdb
WORKING POC
VERIFIED
by Sowhat · textdoswindows
https://www.exploit-db.com/exploits/26194
This exploit leverages a buffer overflow vulnerability in LeapFTP by providing a malformed .lsq file with an excessively long HOST field. The overflow can lead to remote code execution in the context of the user running the application.
Classification
Working Poc 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target:
LeapFTP versions prior to 2.7.6.612
No auth needed
Prerequisites:
Victim must open the malformed .lsq file
MITRE ATT&CK
devstral-2 · analyzed Feb 16, 2026
Full analysis →
References (7)
Core 7
Core References
Third Party Advisory, VDB Entry vdb-entry
x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/21974
Exploit, Patch vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/14655
Exploit, Patch, Vendor Advisory x_refsource_confirm
http://www.leapware.com/security/2005082301.txt
Mailing List mailing-list
x_refsource_bugtraq
http://marc.info/?l=bugtraq&m=112491089723070&w=2
Third Party Advisory, VDB Entry vdb-entry
x_refsource_sectrack
http://securitytracker.com/id?1014785
Exploit, Patch, Vendor Advisory x_refsource_misc
http://secway.org/advisory/AD20050824.txt
Patch, Vendor Advisory third-party-advisory
x_refsource_secunia
http://secunia.com/advisories/16552/
Scores
EPSS
0.0692
EPSS Percentile
93.3%
Details
Status
published
Products (3)
leapware/leapftp
2.7.3.600
leapware/leapftp
2.7.4
leapware/leapftp
2.7.4.602
Published
Sep 02, 2005
Tracked Since
Feb 18, 2026