Vulnerabilities > CVE-2005-1666 - Unspecified vulnerability in Orenosv Http FTP Server
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN orenosv
exploit available
Summary
Multiple buffer overflows in Orenosv HTTP/FTP Server 0.8.1 allow remote authenticated users to cause a denial of service (server crash) and possibly execute arbitrary code via long arguments to FTP commands such as MKD, RMD, or DELE, which are processed by the (1) ftp_xlate_path, (2) ftp_is_canonical, or (3) os_fn_nativize functions, or (4) a long SSI command that is processed by the parse_cmd function in cgissi.exe.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Exploit-Db
description Orenosv HTTP/FTP Server 0.8.1 CGISSI.EXE Remote Buffer Overflow Vulnerability. CVE-2005-1666. Dos exploit for windows platform id EDB-ID:25631 last seen 2016-02-03 modified 2005-05-09 published 2005-05-09 reporter Tan Chew Keong source https://www.exploit-db.com/download/25631/ title Orenosv HTTP/FTP Server 0.8.1 CGISSI.EXE Remote Buffer Overflow Vulnerability description Orenosv HTTP/FTP Server 0.8.1 FTP Commands Remote Buffer Overflow Vulnerability. CVE-2005-1666. Dos exploit for windows platform id EDB-ID:25629 last seen 2016-02-03 modified 2008-05-08 published 2008-05-08 reporter Samsta source https://www.exploit-db.com/download/25629/ title Orenosv HTTP/FTP Server 0.8.1 FTP Commands Remote Buffer Overflow Vulnerability
References
- http://hp.vector.co.jp/authors/VA027031/orenosv/index_en.html
- http://hp.vector.co.jp/authors/VA027031/orenosv/index_en.html
- http://secunia.com/advisories/15302
- http://secunia.com/advisories/15302
- http://securitytracker.com/id?1013923
- http://securitytracker.com/id?1013923
- http://www.osvdb.org/16165
- http://www.osvdb.org/16165
- http://www.osvdb.org/16166
- http://www.osvdb.org/16166
- http://www.securiteam.com/windowsntfocus/5FP0H00FPS.html
- http://www.securiteam.com/windowsntfocus/5FP0H00FPS.html
- http://www.security.org.sg/vuln/orenosv081.html
- http://www.security.org.sg/vuln/orenosv081.html
- http://www.securityfocus.com/bid/13546
- http://www.securityfocus.com/bid/13546
- http://www.securityfocus.com/bid/13549
- http://www.securityfocus.com/bid/13549
- http://www.vupen.com/english/advisories/2005/0499
- http://www.vupen.com/english/advisories/2005/0499
- https://exchange.xforce.ibmcloud.com/vulnerabilities/20510
- https://exchange.xforce.ibmcloud.com/vulnerabilities/20510
- https://exchange.xforce.ibmcloud.com/vulnerabilities/20512
- https://exchange.xforce.ibmcloud.com/vulnerabilities/20512