5
CVSSv2

CVE-2001-0264

Published: 18/06/2001 Updated: 05/09/2008
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Gene6 G6 FTP Server 2.0 (aka BPFTP Server 2.10) allows remote malicious users to obtain NETBIOS credentials by requesting information on a file that is in a network share, which causes the server to send the credentials to the host that owns the share, and allows the malicious user to sniff the connection.

Vulnerable Product Search on Vulmon Subscribe to Product

gene6 g6 ftp server 2.0

Exploits

source: wwwsecurityfocuscom/bid/2534/info G6 FTP Server now known as BPFTP Server is an internet FTP server by Gene6 If a logged in FTP user connects to an external share and submits a malformed 'size' or 'mdtm' command, the user could force the FTP server to make an external SMB connection The FTP server must provide login credentials ...