Exploitation Summary
EIP tracks 2 public exploits for CVE-2010-20045.
PoCs published by Metasploit, nullthreat, including Metasploit module exploits/windows/ftp/filewrangler_list_reply.
AI-analyzed exploit summary This exploit targets a stack buffer overflow in FileWrangler 5.30 via an overly long directory name in an FTP response. It uses an egghunter and SEH overwrite to achieve remote code execution.
Description
FileWrangler <= 5.30 suffers from a stack-based buffer overflow vulnerability when parsing directory listings from an FTP server. A malicious server can send an overlong folder name in response to a LIST command, triggering memory corruption during client-side rendering. Exploitation requires passive user interaction—simply connecting to the server—without further input. Successful exploitation may lead to arbitrary code execution.
Exploits (2)
This exploit targets a stack buffer overflow in FileWrangler 5.30 via an overly long directory name in an FTP response. It uses an egghunter and SEH overwrite to achieve remote code execution.
This Metasploit module exploits a stack buffer overflow in FileWrangler 5.30 via an overly long directory name in an FTP response. It uses an egghunter to locate and execute the payload, bypassing space constraints.
References (5)
Scores
CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:P/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N