|
|
Info |
Last Modified |
| about 1 month ago |
|
|
|
|
|
Description |
A remote overflow exists in GlobalSCAPE Secure FTP Server. The Secure FTP Server fails to perform adequate bounds checking of user-supplied input resulting in a buffer overflow. With a specially crafted request in the format "[3000 Bytes] \r\n" , an attacker can overwrite the EIP and SEH registers and execute arbitrary code on the system, resulting in a loss of integrity.
|
|
Classification |
Location:
Remote/Network Access Required
Attack Type:
Input Manipulation
Impact:
Loss of Integrity
Exploit:
Exploit Available
Disclosure:
OSVDB Verified
|
|
Solution |
Upgrade to version 3.0.3 Build 4.29.2005 or higher, as it has been reported to fix this vulnerability. An upgrade is required as there are no known workarounds.
|
|
Products |
|
Secure FTP Server
 |
3.0.2 |
|
|
|
|
|
|
Credit |
- Mati Aharoni - muts
whitehat.co.il -
|
|
BlogsProvided by Technorati
|
None found at this time
|
|
|