5
CVSSv2

CVE-2002-2245

Published: 31/12/2002 Updated: 05/09/2008
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

ftpd in NetBSD 1.5 up to and including 1.5.3 and 1.6 does not properly quote a digit in response to a STAT command for a filename that contains a carriage return followed by a digit, which can cause firewalls and other intermediary devices to lose proper track of the FTP session.

Vulnerable Product Search on Vulmon Subscribe to Product

netbsd ftpd 1.5.1

netbsd ftpd 1.5.2

netbsd ftpd 1.5.3

netbsd ftpd 1.6

netbsd ftpd 1.5