CVE-2009-3976

Labtam ProFTP 2.9 - Buffer Overflow

Title source: llm

Description

Buffer overflow in Labtam ProFTP 2.9 allows remote FTP servers to cause a denial of service (application crash) or execute arbitrary code via a long 220 reply (aka connection greeting or welcome message).

Exploits (3)

metasploit WORKING POC NORMAL
rubypocwin
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/windows/ftp/proftp_banner.rb
exploitdb WORKING POC VERIFIED
by His0k4 · rubyremotewindows
https://www.exploit-db.com/exploits/9508
exploitdb WORKING POC VERIFIED
by Metasploit · rubyremotewindows
https://www.exploit-db.com/exploits/16709

Scores

EPSS 0.6445
EPSS Percentile 98.4%

Classification

CWE
CWE-119
Status draft

Affected Products (1)

labtam-inc/proftp

Timeline

Published Nov 18, 2009
Tracked Since Feb 18, 2026