Vulnerabilities > CVE-2005-3683 - Unspecified vulnerability in Freeftpd
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
Stack-based buffer overflow in freeFTPd before 1.0.9 with Logging enabled, allows remote attackers to cause a denial of service (application crash), and possibly execute arbitrary code, via a long USER command.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 9 |
Exploit-Db
description FreeFTPD <= 1.0.8 (USER) Remote Buffer Overflow Exploit. CVE-2005-3683,CVE-2005-3684. Remote exploit for windows platform id EDB-ID:1330 last seen 2016-01-31 modified 2005-11-17 published 2005-11-17 reporter Expanders source https://www.exploit-db.com/download/1330/ title FreeFTPD <= 1.0.8 USER Remote Buffer Overflow Exploit description freeFTPd 1.0 Username Overflow. CVE-2005-3683. Remote exploit for windows platform id EDB-ID:16707 last seen 2016-02-02 modified 2010-07-03 published 2010-07-03 reporter metasploit source https://www.exploit-db.com/download/16707/ title freeFTPd 1.0 Username Overflow
Metasploit
description | This module exploits a stack buffer overflow in the freeFTPd multi-protocol file transfer service. This flaw can only be exploited when logging has been enabled (non-default). |
id | MSF:EXPLOIT/WINDOWS/FTP/FREEFTPD_USER |
last seen | 2020-06-01 |
modified | 2017-07-24 |
published | 2006-01-08 |
references | https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-3683 |
reporter | Rapid7 |
source | https://github.com/rapid7/metasploit-framework/blob/master//modules/exploits/windows/ftp/freeftpd_user.rb |
title | freeFTPd 1.0 Username Overflow |
Packetstorm
data source | https://packetstormsecurity.com/files/download/83039/freeftpd_user.rb.txt |
id | PACKETSTORM:83039 |
last seen | 2016-12-05 |
published | 2009-11-26 |
reporter | MC |
source | https://packetstormsecurity.com/files/83039/freeFTPd-1.0-Username-Overflow.html |
title | freeFTPd 1.0 Username Overflow |
Saint
bid | 15457 |
description | FreeFTPd user name buffer overflow |
id | ftp_freeftpd |
osvdb | 20909 |
title | freeftpd_user_bo |
type | remote |
References
- http://freeftpd.com/?ctt=changelog
- http://freeftpd.com/?ctt=changelog
- http://marc.info/?l=full-disclosure&m=113213763821294&w=2
- http://marc.info/?l=full-disclosure&m=113213763821294&w=2
- http://marc.info/?l=full-disclosure&m=113216611924774&w=2
- http://marc.info/?l=full-disclosure&m=113216611924774&w=2
- http://secunia.com/advisories/17583
- http://secunia.com/advisories/17583
- http://securitytracker.com/id?1015230
- http://securitytracker.com/id?1015230
- http://www.osvdb.org/20909
- http://www.osvdb.org/20909
- http://www.securityfocus.com/bid/15457
- http://www.securityfocus.com/bid/15457
- http://www.vupen.com/english/advisories/2005/2458
- http://www.vupen.com/english/advisories/2005/2458
- https://exchange.xforce.ibmcloud.com/vulnerabilities/23118
- https://exchange.xforce.ibmcloud.com/vulnerabilities/23118