10
CVSSv2

CVE-1999-0950

Published: 28/10/1999 Updated: 09/09/2008
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 1000
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Buffer overflow in WFTPD FTP server allows remote malicious users to gain root access via a series of MKD and CWD commands that create nested directories.

Vulnerable Product Search on Vulmon Subscribe to Product

texas imperial software wftpd 2.34

texas imperial software wftpd 2.40

Exploits

source: wwwsecurityfocuscom/bid/747/info WFTPD is reported prone to a remote buffer overflow vulnerability The issue exists due to a lack of sufficient bounds checking performed on MKD and CWD arguments It is reported that superfluous data passed to MKD first and then to CWD results in the overflow This vulnerability may be exploi ...
source: wwwsecurityfocuscom/bid/747/info WFTPD is reported prone to a remote buffer overflow vulnerability The issue exists due to a lack of sufficient bounds checking performed on MKD and CWD arguments It is reported that superfluous data passed to MKD first and then to CWD results in the overflow This vulnerability may be exploited ...