Show filters
5 Total Results
Displaying 1-5 of 5
Sort by:
Attacker Value
Unknown

CVE-2009-4593

Disclosure Date: January 07, 2010 (last updated October 04, 2023)
The bftpdutmp_log function in bftpdutmp.c in Bftpd before 2.4 does not place a '\0' character at the end of the string value of the ut.bu_host structure member, which might allow remote attackers to cause a denial of service (daemon crash) via unspecified vectors. NOTE: some of these details are obtained from third party information.
0
Attacker Value
Unknown

CVE-2007-2051

Disclosure Date: April 16, 2007 (last updated October 04, 2023)
Buffer overflow in the parsecmd function in bftpd before 1.8 has unknown impact and attack vectors related to the confstr variable.
0
Attacker Value
Unknown

CVE-2002-2245

Disclosure Date: December 31, 2002 (last updated February 22, 2025)
ftpd in NetBSD 1.5 through 1.5.3 and 1.6 does not properly quote a digit in response to a STAT command for a filename that contains a carriage return followed by a digit, which can cause firewalls and other intermediary devices to lose proper track of the FTP session.
0
Attacker Value
Unknown

CVE-2001-0295

Disclosure Date: May 03, 2001 (last updated February 22, 2025)
Directory traversal vulnerability in War FTP 1.67.04 allows remote attackers to list directory contents and possibly read files via a "dir *./../.." command.
0
Attacker Value
Unknown

CVE-2000-0131

Disclosure Date: February 01, 2000 (last updated February 22, 2025)
Buffer overflow in War FTPd 1.6x allows users to cause a denial of service via long MKD and CWD commands.
0