5
CVSSv2

CVE-2005-0277

Published: 02/05/2005 Updated: 11/07/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 515
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

Buffer overflow in the FTP service in 3Com 3CDaemon 2.0 revision 10 allows remote malicious users to cause a denial of service (application crash) and execute arbitrary code via (1) a long username in the USER command or (2) an FTP command that contains a long argument, such as cd, send, or ls.

Vulnerable Product Search on Vulmon Subscribe to Product

3com 3cdaemon 2.0

Exploits

/* Added " on line 86 /str0ke */ /* 3com 3CDaemon FTP Unauthorized "USER" Remote BOverflow The particularity of this exploit is to exploits a FTP server without the need of any authorization Homepage: www3comcom version: 3CDaemon v20 rev10 Link: ftp://ftp3comcom/pub/utilbin/win32/3cdv2r10zip Application Risk: Severely High Internet Ri ...
/* Email fixed brotha /str0ke */ /* 3Com Ftp Server remote overflow exploit author : c0d3r "kaveh razavi" c0d3rz_team@yahoocom package : 3CDaemon version 20 revision 10 advisory : secwayorg/advisory/ad20041011txt company address : 3comcom it is just a simple PoC tested on winxp sp 1 and may not work on other systems ...
## # $Id: 3cdaemon_ftp_userrb 10394 2010-09-20 08:06:27Z jduck $ ## ## # This file is part of the Metasploit Framework and may be subject to # redistribution and commercial restrictions Please see the Metasploit # Framework web site for more information on licensing and terms of use # metasploitcom/framework/ ## require 'msf/core' cla ...