TYPSoft FTP server is vulnerable to a denial of service attack. A maliciously crafted string sent using either 'RETR' or 'STOR' commands to a host running TYPSoft FTP server will result in the service terminating. A restart of the server is required in order to gain normal functionality.
Classification
Attack Type:
Denial of Service
Impact:
Loss of Availability
Exploit:
Exploit Public
Technical
The remote TYPSoft FTP server is version 0.95 and crashes when it is sent the command RETR ../../* or STOR ../../* and requires a restart of the server to function properly.
Solution
Upgrade to TYPSoft FTP Server version 0.96 or newer
This product uses the Daylife API but is not endorsed or certified by Daylife.
This section lists the latest news and blogs found via the daylife API (and for older items, the technorati API), which mention or otherwise discuss this vulnerability.