freeFTPd.exe in freeFTPd up to and including 1.0.11 allows remote malicious users to bypass authentication via a crafted SFTP session, as demonstrated by an OpenSSH client with modified versions of ssh.c and sshconnect2.c.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
freeftpd freeftpd 1.0.10 |
||
freeftpd freeftpd 1.0.7 |
||
freeftpd freeftpd 1.0 |
||
freeftpd freeftpd 1.0.5 |
||
freeftpd freeftpd 1.0.4 |
||
freeftpd freeftpd 1.0.3 |
||
freeftpd freeftpd 1.0.2 |
||
freeftpd freeftpd |
||
freeftpd freeftpd 1.0.8 |
||
freeftpd freeftpd 1.0.6 |
||
freeftpd freeftpd 1.0.1 |