CVE-2007-4004

IBM AIX <5.3 SP6 & 5.2.0 - Buffer Overflow

Title source: llm

Description

Buffer overflow in the ftp client in IBM AIX 5.3 SP6 and 5.2.0 allows local users to execute arbitrary code via unspecified vectors that trigger the overflow in a gets function call. NOTE: the client is setuid root on AIX, so this issue crosses privilege boundaries.

Exploits (1)

exploitdb WORKING POC VERIFIED
by qaaz · clocalaix
https://www.exploit-db.com/exploits/4233

Scores

EPSS 0.0046
EPSS Percentile 64.4%

Details

CWE
CWE-119
Status published
Products (2)
ibm/aix 5.2.0
ibm/aix 5.3 sp6
Published Jul 26, 2007
Tracked Since Feb 18, 2026