Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Pablo Software Solutions FTP Server Format String Vulnerability

A format string vulnerability has been reported in Pablo Software Solutions FTP Server. The vulnerability occurs due to inadequate checking of user-supplied input for the login credentials.

An attacker can exploit this vulnerability by logging into the FTP server with a username that includes malicious format specifiers. This may result in memory being overwritten by remote attackers, possibly to execute arbitrary code.

Attacker-supplied code will be executed with the privileges of the FTP server.







 

Privacy Statement
Copyright 2008, SecurityFocus