Etype EServ Bounce Attack Vulnerability
BID:3986
Info
Etype EServ Bounce Attack Vulnerability
| Bugtraq ID: | 3986 |
| Class: | Design Error |
| CVE: |
CVE-2002-0222 |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 29 2002 12:00AM |
| Updated: | Jul 11 2009 09:56AM |
| Credit: | Discovered and posted to Bugtraq by Arne Vidstrom <[email protected]>. |
| Vulnerable: |
Etype Eserv 2.97 |
| Not Vulnerable: |
Etype Eserv 2.98 |
Discussion
Etype EServ Bounce Attack Vulnerability
EServ is a combination Mail, News, Web, FTP and Proxy Server for Microsoft Windows 9x/NT/2000 systems
EServ is prone to FTP bounce attacks. An attacker who logs in to the FTP server may use the PORT command to connect to an arbitrary port on a remote host. As a result, the attacker may use the FTP server as a proxy.
EServ is a combination Mail, News, Web, FTP and Proxy Server for Microsoft Windows 9x/NT/2000 systems
EServ is prone to FTP bounce attacks. An attacker who logs in to the FTP server may use the PORT command to connect to an arbitrary port on a remote host. As a result, the attacker may use the FTP server as a proxy.
Exploit / POC
Etype EServ Bounce Attack Vulnerability
No exploit code required.
No exploit code required.
Solution / Fix
Etype EServ Bounce Attack Vulnerability
Solution:
Etype has addressed this issue in EServ 2.98:
Etype Eserv 2.97
Solution:
Etype has addressed this issue in EServ 2.98:
Etype Eserv 2.97
-
Etype Eserv3123
ftp://ftp.eserv.ru/pub/beta/2.98/Eserv3123.zip