Vulnerabilities > CVE-2005-0779 - Malformed User Name Connection Denial Of Service vulnerability in Platinumftp Platinumftpserver 1.0.18

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
PARTIAL
network
low complexity
platinumftp
nessus
exploit available

Summary

PlatinumFTP 1.0.18, and possibly earlier versions, allows remote attackers to cause a denial of service (server crash) via multiple connection attempts with a \ (backslash) in the username.

Vulnerable Configurations

Part Description Count
Application
Platinumftp
1

Exploit-Db

descriptionPlatinumFTPServer 1.0.18 Multiple Malformed User Name Connection Denial Of Service Vulnerability. CVE-2005-0779. Dos exploit for windows platform
idEDB-ID:25218
last seen2016-02-03
modified2005-03-05
published2005-03-05
reporterports
sourcehttps://www.exploit-db.com/download/25218/
titlePlatinumFTPServer 1.0.18 - Multiple Malformed User Name Connection Denial of Service Vulnerability

Nessus

NASL familyFTP
NASL idPLATINUM_FTP_MALFORMED_USERNAME_DOS.NASL
descriptionThe installed version of PlatinumFTPserver on the remote host suffers from a denial of service vulnerability. Specifically, when a user tries to login with a username containing a backslash,
last seen2020-06-01
modified2020-06-02
plugin id17321
published2005-03-14
reporterThis script is Copyright (C) 2005-2018 Tenable Network Security, Inc.
sourcehttps://www.tenable.com/plugins/nessus/17321
titlePlatinumFTPServer username Multiple Connection Handling Remote Format String