Record summary

CVE-2011-5164 has a selected CVSS score of 9.3; EIP currently links 2 catalogued exploits.

Description

Stack-based buffer overflow in VanDyke Software AbsoluteFTP 1.9.6 through 2.2.10 allows remote FTP servers to execute arbitrary code via a crafted file name in a LIST command response.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
2

Proofs of concept

2

Catalogued exploits

ExploitDBAbsoluteFTP 1.9.6 < 2.2.10 - 'LIST' Remote Buffer Overflow (Metasploit)ExploitDB exploitby NodeNot analyzed1 file
ExploitDB

PoC details
MetasploitAbsoluteFTP 1.9.6 - 2.2.10 LIST Command Remote Buffer OverflowMetasploit exploitby NodeNot analyzed1 file

Ruby

Metasploit

PoC details

References

6