CVE-2006-4847
Ipswitch WS_FTP Server <5.05 - Buffer Overflow
Title source: llmDescription
Multiple buffer overflows in Ipswitch WS_FTP Server 5.05 before Hotfix 1 allow remote authenticated users to execute arbitrary code via long (1) XCRC, (2) XSHA1, or (3) XMD5 commands.
Exploits (3)
exploitdb
WORKING POC
VERIFIED
by Metasploit · rubyremotewindows
https://www.exploit-db.com/exploits/16717
exploitdb
WORKING POC
VERIFIED
by Jacopo Cervini · remotewindows
https://www.exploit-db.com/exploits/3335
metasploit
WORKING POC
NORMAL
rubypocwin
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/windows/ftp/wsftp_server_505_xmd5.rb
References (6)
Scores
EPSS
0.8187
EPSS Percentile
99.2%
Details
Status
published
Products (27)
ipswitch/ws_ftp_server
1.0.1eval
ipswitch/ws_ftp_server
1.0.2eval
ipswitch/ws_ftp_server
3.0_1
ipswitch/ws_ftp_server
4.01
ipswitch/ws_ftp_server
5.02
ipswitch/ws_ftp_server
5.03
progress/ws_ftp_server
1.0.1
progress/ws_ftp_server
1.0.1.e
progress/ws_ftp_server
1.0.2
progress/ws_ftp_server
1.0.2.e
... and 17 more
Published
Sep 19, 2006
Tracked Since
Feb 18, 2026