EIP-2026-119239
PRE-CVEUPlusFTP Server 1.7.1.01 - (Authenticated) HTTP Remote Buffer Overflow
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-119239. PoCs published by Karn Ganeshen & corelanc0d3r.
AI-analyzed exploit summary This is a functional buffer overflow exploit for UPlusFTP Server v1.7.1.01, leveraging a crafted HTTP GET request with an oversized 'path' parameter to overwrite the return address and execute shellcode. The exploit includes a calc.exe payload and targets specific JMP ESP addresses for XP SP2/SP3.
Description
UPlusFTP Server 1.7.1.01 - (Authenticated) HTTP Remote Buffer Overflow
Exploits (1)
This is a functional buffer overflow exploit for UPlusFTP Server v1.7.1.01, leveraging a crafted HTTP GET request with an oversized 'path' parameter to overwrite the return address and execute shellcode. The exploit includes a calc.exe payload and targets specific JMP ESP addresses for XP SP2/SP3.