Vulnerabilities > CVE-2006-2212 - Unspecified vulnerability in Karjasoft Sami FTP Server 2.0.2
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
Buffer overflow in KarjaSoft Sami FTP Server 2.0.2 and earlier allows remote attackers to execute arbitrary code via a long (1) USER or (2) PASS command.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Exploit-Db
description | KarjaSoft Sami FTP Server v2.02 USER Overflow. CVE-2006-0441,CVE-2006-2212. Remote exploit for windows platform |
id | EDB-ID:16702 |
last seen | 2016-02-02 |
modified | 2010-04-30 |
published | 2010-04-30 |
reporter | metasploit |
source | https://www.exploit-db.com/download/16702/ |
title | KarjaSoft Sami FTP Server 2.02 - USER Overflow |
Metasploit
description | This module exploits the KarjaSoft Sami FTP Server version 2.02 by sending an excessively long USER string. The stack is overwritten when the administrator attempts to view the FTP logs. Therefore, this exploit is passive and requires end-user interaction. Keep this in mind when selecting payloads. When the server is restarted, it will re-execute the exploit until the logfile is manually deleted via the file system. |
id | MSF:EXPLOIT/WINDOWS/FTP/SAMI_FTPD_USER |
last seen | 2020-01-14 |
modified | 2017-11-08 |
published | 2008-03-17 |
references | |
reporter | Rapid7 |
source | https://github.com/rapid7/metasploit-framework/blob/master//modules/exploits/windows/ftp/sami_ftpd_user.rb |
title | KarjaSoft Sami FTP Server v2.02 USER Overflow |
Packetstorm
data source | https://packetstormsecurity.com/files/download/83185/sami_ftpd_user.rb.txt |
id | PACKETSTORM:83185 |
last seen | 2016-12-05 |
published | 2009-11-26 |
reporter | patrick |
source | https://packetstormsecurity.com/files/83185/KarjaSoft-Sami-FTP-Server-v2.02-USER-Overflow.html |
title | KarjaSoft Sami FTP Server v2.02 USER Overflow |
References
- http://securityreason.com/securityalert/842
- http://securityreason.com/securityalert/842
- http://securitytracker.com/id?1016031
- http://securitytracker.com/id?1016031
- http://www.osvdb.org/25670
- http://www.osvdb.org/25670
- http://www.securityfocus.com/archive/1/432944/100/0/threaded
- http://www.securityfocus.com/archive/1/432944/100/0/threaded
- http://www.securityfocus.com/bid/17835
- http://www.securityfocus.com/bid/17835
- https://exchange.xforce.ibmcloud.com/vulnerabilities/26254
- https://exchange.xforce.ibmcloud.com/vulnerabilities/26254