CVE-2007-6740
pyftpdlib < 0.2.0 - Authenticated Denial of Service via STOU Command
Title source: llmDescription
The ftp_STOU function in FTPServer.py in pyftpdlib before 0.2.0 does not limit the number of attempts to discover a unique filename, which might allow remote authenticated users to cause a denial of service via a STOU command.
References (4)
Core 4
Core References
Issue Tracking x_refsource_confirm
http://code.google.com/p/pyftpdlib/source/diff?spec=svn37&r=37&format=side&path=/trunk/pyftpdlib/FTPServer.py
Issue Tracking x_refsource_confirm
http://code.google.com/p/pyftpdlib/source/browse/trunk/HISTORY
Issue Tracking x_refsource_confirm
http://code.google.com/p/pyftpdlib/source/detail?r=37
Issue Tracking x_refsource_confirm
http://code.google.com/p/pyftpdlib/issues/detail?id=25
Scores
EPSS
0.0178
EPSS Percentile
76.0%
Details
CWE
CWE-264
Status
published
Products (3)
g.rodola/pyftpdlib
0.1
g.rodola/pyftpdlib
< 0.1.1
pypi/pyftpdlib
0 - 0.2.0PyPI
Published
Oct 19, 2010
Tracked Since
Feb 18, 2026