6.4
CVSSv2

CVE-2000-0645

Published: 21/07/2000 Updated: 10/09/2008
CVSS v2 Base Score: 6.4 | Impact Score: 4.9 | Exploitability Score: 10
VMScore: 645
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:P

Vulnerability Summary

WFTPD and WFTPD Pro 2.41 allows remote malicious users to cause a denial of service by using the RESTART (REST) command and writing beyond the end of a file, or writing to a file that does not exist, via commands such as STORE UNIQUE (STOU), STORE (STOR), or APPEND (APPE).

Vulnerable Product Search on Vulmon Subscribe to Product

texas imperial software wftpd 2.4.1

texas imperial software wftpd 2.4.1_rc11

texas imperial software wftpd 2.40

texas imperial software wftpd 2.34

Exploits

source: wwwsecurityfocuscom/bid/1506/info WFTPD versions prior to 241RC11 suffer from a number of vulnerabilities 1) Issuing a STAT command while a LIST is in progress will cause the ftp server to crash 2) If the REST command is used to write past the end of a file or to a non-existant file (with STOU, STOR, or APPE), the ftp serve ...