IPSwitch WS_FTP Server FTP Bounce Vulnerability
BID:6050
Info
IPSwitch WS_FTP Server FTP Bounce Vulnerability
| Bugtraq ID: | 6050 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 25 2002 12:00AM |
| Updated: | Oct 25 2002 12:00AM |
| Credit: | Vulnerability originally discovered by Hobbit <[email protected]>. This instance reported by low halo <[email protected]>. |
| Vulnerable: |
Ipswitch WS FTP Server 3.1.3 |
| Not Vulnerable: | |
Discussion
IPSwitch WS_FTP Server FTP Bounce Vulnerability
Ipswitch WS_FTP Server is a FTP server for Microsoft Windows platforms. WS_FTP Server is vulnerable to a FTP bounce attack when a user submits a specially crafted FTP command.
It is possible for a user accessing a vulnerable FTP server to send data to other systems. By using the PORT command to specify a different host and port from the host that is the origin of the connection, it is possible for a user to send data to the specified host that may be malicious. This could result in the proxying of arbitrary requests by a user through the system using the vulnerable software.
Ipswitch WS_FTP Server is a FTP server for Microsoft Windows platforms. WS_FTP Server is vulnerable to a FTP bounce attack when a user submits a specially crafted FTP command.
It is possible for a user accessing a vulnerable FTP server to send data to other systems. By using the PORT command to specify a different host and port from the host that is the origin of the connection, it is possible for a user to send data to the specified host that may be malicious. This could result in the proxying of arbitrary requests by a user through the system using the vulnerable software.
Exploit / POC
IPSwitch WS_FTP Server FTP Bounce Vulnerability
No exploit is required for this vulnerability.
No exploit is required for this vulnerability.
References
IPSwitch WS_FTP Server FTP Bounce Vulnerability
References:
References:
- CERT Tech Tips FTP PORT Attacks (CERT/CC)
- WS FTP Server Support Homepage (IPSwitch)