Exploitation Summary
EIP tracks 1 public exploit for CVE-2016-5764. PoCs published by Umit Aksu.
AI-analyzed exploit summary This exploit demonstrates a stack-based buffer overflow in Micro Focus Rumba FTP Client 4.x by sending a maliciously long directory name via a rogue FTP server. It overwrites SEH/NSEH to achieve remote code execution on the client.
Description
Micro Focus Rumba FTP 4.X client buffer overflow makes it possible to corrupt the stack and allow arbitrary code execution. Fixed in: Rumba FTP 4.5 (HF 14668). This can only occur if a client connects to a malicious server.
Exploits (1)
This exploit demonstrates a stack-based buffer overflow in Micro Focus Rumba FTP Client 4.x by sending a maliciously long directory name via a rogue FTP server. It overwrites SEH/NSEH to achieve remote code execution on the client.
References (3)
Scores
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H