Vulnerabilities > CVE-2004-0277 - Unspecified vulnerability in Bolintech Dream FTP Server 1.02

047910
CVSS 10.0 - CRITICAL
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
network
low complexity
bolintech
critical
exploit available

Summary

Format string vulnerability in Dream FTP 1.02 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via format string specifiers in the username.

Vulnerable Configurations

Part Description Count
Application
Bolintech
1

Exploit-Db

descriptionBolinTech Dream FTP Server 1.0 User Name Format String Vulnerability (2). CVE-2004-0277. Remote exploit for windows platform
idEDB-ID:23661
last seen2016-02-02
modified2004-02-07
published2004-02-07
reporterSkylined
sourcehttps://www.exploit-db.com/download/23661/
titleBolinTech Dream FTP Server 1.0 User Name Format String Vulnerability 2