WS_FTP Server Denial of Service Vulnerability
BID:217
Info
WS_FTP Server Denial of Service Vulnerability
| Bugtraq ID: | 217 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | Unknown |
| Published: | Feb 04 1999 12:00AM |
| Updated: | Feb 04 1999 12:00AM |
| Credit: | This vulnerability was posted to the NTBugtraq mailing list by Marc <[email protected]>. |
| Vulnerable: |
Ipswitch WS_FTP Server 1.0.2 EVAL Ipswitch WS_FTP Server 1.0.1 EVAL |
| Not Vulnerable: | |
Discussion
WS_FTP Server Denial of Service Vulnerability
The WS_FTP Server is vulnerable to a Denial of Service attack. Issuing a CWD command (as a logged in user) with more than 876 characters will stop the Server from responding to FTP requests.
The WS_FTP Server is vulnerable to a Denial of Service attack. Issuing a CWD command (as a logged in user) with more than 876 characters will stop the Server from responding to FTP requests.
Exploit / POC
WS_FTP Server Denial of Service Vulnerability
see discussion
see discussion
Solution / Fix
WS_FTP Server Denial of Service Vulnerability
Solution:
Ipswitch may have released a patch for this problem.
Solution:
Ipswitch may have released a patch for this problem.
References
WS_FTP Server Denial of Service Vulnerability
References:
References: