CVE-2006-7235

5E5 Teamtek Universal FTP Server - Improper Input Validation

Title source: rule

Description

Teamtek Universal FTP Server 1.0.50 allows remote attackers to cause a denial of service (daemon crash or hang) via (1) multiple STOR (aka PUT) commands, or an MKD command followed by (2) a '*' argument, (3) a '|' argument, (4) spaces, or (5) a long string. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

Exploits (2)

exploitdb WORKING POC VERIFIED
by Praveen Darhanam · perldoswindows
https://www.exploit-db.com/exploits/29036
exploitdb WORKING POC VERIFIED
by Adriel T. Desautels · perllocalhp-ux
https://www.exploit-db.com/exploits/28984

Scores

EPSS 0.1318
EPSS Percentile 94.2%

Details

CWE
CWE-20
Status published
Products (2)
5e5/teamtek_universal_ftp_server 1.0.44
5e5/teamtek_universal_ftp_server 1.0.50
Published Dec 11, 2008
Tracked Since Feb 18, 2026