4.3
CVSSv2

CVE-2009-4775

Published: 21/04/2010 Updated: 19/09/2017
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 435
Vector: AV:N/AC:M/Au:N/C:N/I:N/A:P

Vulnerability Summary

Format string vulnerability in Ipswitch WS_FTP Professional 12 prior to 12.2 allows remote malicious users to cause a denial of service (crash) via format string specifiers in the status code portion of an HTTP response.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

ipswitch ws ftp 12.0

ipswitch ws ftp 12.0.1

Exploits

#!/usr/bin/perl # nocoolnameforawsftppocpl # AKA # Ipswitch WS_FTP 12 Professional Remote Format String 0day PoC # # Jeremy Brown [0xjbrown41@gmailcom//jbrownsecblogspotcom//krakowlabscom] 09072009 # # ********************************************************************************************************* # I really _hate_ releasing proof o ...