CVE-2006-4847

Ipswitch WS_FTP Server <5.05 - Buffer Overflow

Title source: llm

Description

Multiple buffer overflows in Ipswitch WS_FTP Server 5.05 before Hotfix 1 allow remote authenticated users to execute arbitrary code via long (1) XCRC, (2) XSHA1, or (3) XMD5 commands.

Exploits (3)

exploitdb WORKING POC VERIFIED
by Metasploit · rubyremotewindows
https://www.exploit-db.com/exploits/16717
exploitdb WORKING POC VERIFIED
by Jacopo Cervini · remotewindows
https://www.exploit-db.com/exploits/3335
metasploit WORKING POC NORMAL
rubypocwin
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/windows/ftp/wsftp_server_505_xmd5.rb

Scores

EPSS 0.8187
EPSS Percentile 99.2%

Details

Status published
Products (27)
ipswitch/ws_ftp_server 1.0.1eval
ipswitch/ws_ftp_server 1.0.2eval
ipswitch/ws_ftp_server 3.0_1
ipswitch/ws_ftp_server 4.01
ipswitch/ws_ftp_server 5.02
ipswitch/ws_ftp_server 5.03
progress/ws_ftp_server 1.0.1
progress/ws_ftp_server 1.0.1.e
progress/ws_ftp_server 1.0.2
progress/ws_ftp_server 1.0.2.e
... and 17 more
Published Sep 19, 2006
Tracked Since Feb 18, 2026