10
CVSSv2

CVE-2004-0277

Published: 23/11/2004 Updated: 11/07/2017
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 1000
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Format string vulnerability in Dream FTP 1.02 allows remote malicious users to cause a denial of service (crash) and possibly execute arbitrary code via format string specifiers in the username.

Vulnerable Product Search on Vulmon Subscribe to Product

bolintech dream ftp server 1.02

Exploits

source: wwwsecurityfocuscom/bid/9600/info It has been reported that Dream FTP Server may be prone to a remote format string vulnerability when processing a malicious request from a client for a username during FTP authentication The issue could crash the server Dream FTP Server version 102 has been reported to be prone to this issue, ...