Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

RhinoSoft Serv-U FTP Server SITE CHMOD Buffer Overflow Vulnerability

The following proof-of-concept example will reportedly cause a server crash:

SITE CHMOD 666 \\...\UUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUU

UPDATE: Core Security Technologies has developed a working commercial exploit for its CORE IMPACT product. This exploit is not otherwise publicly available or known to be circulating in the wild.

The following exploit code has been supplied:







 

Privacy Statement
Copyright 2009, SecurityFocus