CVE-2006-0319
farmers_wife 4.4 SP1 - Directory Traversal and Arbitrary File Write via FTP PUT/SIZE Commands
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2006-0319. PoCs published by kokanin.
AI-analyzed exploit summary This exploit leverages a directory traversal vulnerability in Farmers Wife Server 4.4 SP1 to upload arbitrary files to the system root. It uses default credentials (IEUser/[email protected]) to authenticate and abuses the FTP service to traverse directories and write files.
Description
Directory traversal vulnerability in the FTP server (port 22003/tcp) in Farmers WIFE 4.4 SP1 allows remote attackers to create arbitrary files via ".." (dot dot) sequences in a (1) PUT, (2) SIZE, and possibly other commands.
Exploits (1)
This exploit leverages a directory traversal vulnerability in Farmers Wife Server 4.4 SP1 to upload arbitrary files to the system root. It uses default credentials (IEUser/[email protected]) to authenticate and abuses the FTP service to traverse directories and write files.