Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> Gain root remotely >> ArGoSoft FTP Server RNTO Command Buffer Overflow Vulnerability


Vulnerability Assessment Details

ArGoSoft FTP Server RNTO Command Buffer Overflow Vulnerability

Vulnerability Assessment Summary
Checks for RNTO command buffer overflow vulnerability in ArGoSoft FTP Server

Detailed Explanation for this Vulnerability Assessment

Summary :

The remote FTP server is affected by a buffer overflow vulnerability.

Description :

The remote host is using ArGoSoft FTP Server, an FTP server for
Windows.

The version of ArGoSoft FTP Server installed on the remote host
contains a buffer overflow vulnerability that can be exploited by an
authenticated, but possibly anonymous, user with a specially-crafted
RNTO command to crash the affected application or execute arbitrary
code on the affected host.

See also :

http://archives.neohapsis.com/archives/bugtraq/2006-05/0023.html

Solution :

Unknown at this time.

Network Security Threat Level:

Medium / CVSS Base Score : 4.7
(AV:R/AC:L/Au:NR/C:P/I:N/A:P/B:N)

Networks Security ID: 17789

Vulnerability Assessment Copyright: This script is Copyright (C) 2006-2007 Tenable Network Security

Cables, Connectors

SUN MICROSYSTEMS QLOGIC SWITCH SANBOX-8 SANB-008-004 8x Gigabit Ports Working
$99.99
SUN MICROSYSTEMS QLOGIC SWITCH SANBOX-8 SANB-008-004 8x Gigabit Ports Working pictureDell Networking X1008P Smart Web Managed Switch, 8x 1GbE PoE - L2+
$128.58
Dell Networking X1008P Smart Web Managed Switch, 8x 1GbE PoE  -  L2+ pictureCisco WS-CE500G-12TC 12 Port Switch 8 x 100/1000Base-T LAN 4 x 100/1000Base-T GE
$95.0
Cisco WS-CE500G-12TC 12 Port Switch 8 x 100/1000Base-T LAN 4 x 100/1000Base-T GE pictureCisco WS-CE500-24LC Switch 20 x FastEthernet 4 x 10/100 PoE LAN & 2 x GE Ports
$75.0
Cisco WS-CE500-24LC Switch 20 x FastEthernet 4 x 10/100 PoE LAN & 2 x GE Ports  picture


Discussions

No Discussions have been posted on this vulnerability.