Ipswitch FTP Log Server Denial of Service Vulnerability
BID:27612
Info
Ipswitch FTP Log Server Denial of Service Vulnerability
| Bugtraq ID: | 27612 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2008-0608 |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 04 2008 12:00AM |
| Updated: | May 07 2015 05:33PM |
| Credit: | Luigi Auriemma discovered this vulnerability. |
| Vulnerable: |
Ipswitch WS_FTP Server 6.1 .0 Ipswitch WS_FTP Server 6.0 Ipswitch FTP Log Server 7.9.14.0 |
| Not Vulnerable: |
Ipswitch WS_FTP Server 6.1.1 |
Discussion
Ipswitch FTP Log Server Denial of Service Vulnerability
WS_FTP Log Server shipped with WS_FTP is prone to a remote denial-of-service vulnerability.
Successfully exploiting this issue allows remote attackers to crash the affected application, denying service to legitimate users.
This issue affects WS_FTP running FTP Log Server 7.9.14.0; other versions may also be affected.
WS_FTP Log Server shipped with WS_FTP is prone to a remote denial-of-service vulnerability.
Successfully exploiting this issue allows remote attackers to crash the affected application, denying service to legitimate users.
This issue affects WS_FTP running FTP Log Server 7.9.14.0; other versions may also be affected.
Exploit / POC
Ipswitch FTP Log Server Denial of Service Vulnerability
Attackers can use readily available network utilities to exploit this issue.
Attackers can use readily available network utilities to exploit this issue.
Solution / Fix
Ipswitch FTP Log Server Denial of Service Vulnerability
Solution:
Updates are available. Please see the references for more information.
Solution:
Updates are available. Please see the references for more information.
References
Ipswitch FTP Log Server Denial of Service Vulnerability
References:
References:
- WS FTP Homepage (IpSwitch)
- Socket termination in FTP Log Server 7.9.14.0 (Luigi Auriemma
) - WS_FTP Server 6.1.1 with SSH & WS_FTP Server 6.1.1 (IpSwitch)