WFTPD Server SITE ADMIN Command Remote Denial of Service Vulnerability
BID:22046
Info
WFTPD Server SITE ADMIN Command Remote Denial of Service Vulnerability
| Bugtraq ID: | 22046 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 14 2007 12:00AM |
| Updated: | Jan 15 2007 08:50PM |
| Credit: | Marsu <[email protected]> is credited with the discovery of this vulnerability. |
| Vulnerable: |
Texas Imperial Software WFTPD Pro 3.21 R2 Texas Imperial Software WFTPD Pro 3.21 R3 Texas Imperial Software WFTPD Pro 3.21 R1 Texas Imperial Software WFTPD Pro 3.21 Texas Imperial Software WFTPD Pro 3.20 Texas Imperial Software WFTPD Pro 3.10 R1 Texas Imperial Software WFTPD 3.21 R2 Texas Imperial Software WFTPD 3.21 R3 Texas Imperial Software WFTPD 3.21 R1 Texas Imperial Software WFTPD 3.21 Texas Imperial Software WFTPD 3.20 Texas Imperial Software WFTPD 3.10 R1 Texas Imperial Software WFTPD 3.0 Pro Texas Imperial Software WFTPD 3.0 0R5 Pro Texas Imperial Software WFTPD 3.0 0R5 Texas Imperial Software WFTPD 3.0 0R4 Pro Texas Imperial Software WFTPD 3.0 0R4 Texas Imperial Software WFTPD 3.0 0R3 Texas Imperial Software WFTPD 3.0 Texas Imperial Software WFTPD 2.41 RC14 Pro Texas Imperial Software WFTPD 2.41 RC14 Texas Imperial Software WFTPD 2.40 Texas Imperial Software WFTPD 2.34 Texas Imperial Software WFTPD 2.14 Pro Texas Imperial Software WFTPD 2.4.1 RC12 Texas Imperial Software WFTPD 2.4.1 RC11 Texas Imperial Software WFTPD 2.4.1 Texas Imperial Software WFTPD 3.25 Texas Imperial Software WFTPD 3.23 |
| Not Vulnerable: | |
Discussion
WFTPD Server SITE ADMIN Command Remote Denial of Service Vulnerability
WFTPD Server is prone to a remote denial-of-service vulnerability.
Exploiting this issue allows remote attackers to crash the application, denying further service to legitimate users.
WFTPD Server 3.25 and prior versions are reported vulnerable; other versions may also be affected.
WFTPD Server is prone to a remote denial-of-service vulnerability.
Exploiting this issue allows remote attackers to crash the application, denying further service to legitimate users.
WFTPD Server 3.25 and prior versions are reported vulnerable; other versions may also be affected.
Exploit / POC
WFTPD Server SITE ADMIN Command Remote Denial of Service Vulnerability
A proof of concept has been provided:
A proof of concept has been provided:
Solution / Fix
WFTPD Server SITE ADMIN Command Remote Denial of Service Vulnerability
Solution:
Currently we are not aware of any solutions for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected]:[email protected].
Solution:
Currently we are not aware of any solutions for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected]:[email protected].
References
WFTPD Server SITE ADMIN Command Remote Denial of Service Vulnerability
References:
References:
- WFTPD Homepage (Texas Imperial Software)