CVE-2013-4730
pcman's ftp server 2.0.7 - Unauthenticated Buffer Overflow via USER Command
Title source: llmExploitation Summary
EIP tracks 13 public exploits for CVE-2013-4730.
PoCs published by Koby, Sumit, Mahmod Mahajna (Mahy), including Metasploit module exploits/windows/ftp/pcman_stor.
AI-analyzed exploit summary This exploit targets a buffer overflow in PCMan's FTP Server v2.0 via the RENAME command. It overwrites EIP with a JMP ESP instruction and executes a shellcode payload to achieve remote code execution.
Description
Buffer overflow in PCMan's FTP Server 2.0.7 allows remote attackers to execute arbitrary code via a long string in a USER command.
Exploits (13)
This exploit targets a buffer overflow in PCMan's FTP Server v2.0 via the RENAME command. It overwrites EIP with a JMP ESP instruction and executes a shellcode payload to achieve remote code execution.
This exploit triggers a buffer overflow in PCMAN FTP 2.07 by sending a long string as a command, leading to remote code execution via a shellcode payload. The exploit constructs a malicious buffer with padding, EIP overwrite, NOP sled, and shellcode.
This exploit targets a buffer overflow vulnerability in PCMAN FTP Server 2.07 via the CWD command. It sends a crafted payload containing a bind shell (port 4444) to achieve remote code execution.
This exploit targets a buffer overflow vulnerability in PCMAN FTP Server 2.07 via the ABOR command. It sends a crafted payload containing a bind shell shellcode to achieve remote code execution.
This exploit targets a buffer overflow vulnerability in PCMAN FTP 2.07 via a maliciously crafted STOR command. It delivers a shellcode payload to achieve remote code execution by leveraging a JMP ESP instruction in kernel32.dll.
This exploit targets a buffer overflow vulnerability in PCMAN FTPD 2.07 via the PASS command. It sends a crafted payload with NOPs and shellcode to execute calc.exe, demonstrating remote code execution.
This exploit targets a buffer overflow in PCMan's FTPD v2.0.7 via the USER command, allowing remote code execution. It uses a standard stack-based overflow with a return address to achieve control flow hijacking.
This exploit targets a buffer overflow vulnerability in PCMan FTP Server v2.0.7 via the MKD command. It sends a crafted payload with a bind shell shellcode to achieve remote code execution.
This Metasploit module exploits a stack-based buffer overflow in PCMAN FTP Server 2.07 via the STOR command with '/../' parameters. It delivers a payload to achieve remote code execution on Windows XP SP3 by overwriting the return address with a JMP ESP instruction.
This exploit targets a buffer overflow vulnerability in PCMan's FTP Server 2.0. It sends a crafted payload with a JMP ESP address and shellcode to achieve remote code execution.
This is a functional buffer overflow exploit for CVE-2013-4730 targeting PCman FTP Server 2.0.7, which overwrites the buffer and EIP to execute a reverse shell payload.
This Metasploit module exploits a stack-based buffer overflow in PCMAN FTP Server v2.07 via the STOR command with '/../' parameters, allowing remote code execution post-authentication. It uses a known return address (0x77c35459) and avoids bad characters to deliver a payload.
This Metasploit module exploits a buffer overflow vulnerability in PCMAN FTP Server v2.0.7 via the PUT command, allowing remote code execution. It includes a payload delivery mechanism and targets Windows XP SP3 English with a specific return address.