CVE-2009-1611
ElectraSoft 32bit FTP 09.04.24 - Remote Code Execution via Long CWD Reply
Title source: llmExploitation Summary
EIP tracks 2 public exploits for CVE-2009-1611. PoCs published by His0k4.
AI-analyzed exploit summary This exploit targets a buffer overflow vulnerability in 32-bit FTP (09.04.24) via the CWD response. It uses a SEH overwrite technique to execute shellcode (calc.exe) on Windows XP SP3.
Description
Stack-based buffer overflow in ElectraSoft 32bit FTP 09.04.24 allows remote FTP servers to execute arbitrary code via a long 257 reply to a CWD command.
Exploits (2)
This exploit targets a buffer overflow vulnerability in 32-bit FTP (09.04.24) via the CWD response. It uses a SEH overwrite technique to execute shellcode (calc.exe) on Windows XP SP3.
This exploit targets a buffer overflow vulnerability in a 32-bit FTP server (09.04.24) via the CWD response. It sends a crafted payload with a JMP ESP instruction and shellcode to execute 'calc.exe' on the target system.