Vulnerabilities > CVE-2007-2318 - Unspecified vulnerability in Filezilla
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN filezilla
nessus
Summary
Multiple format string vulnerabilities in FileZilla before 2.2.32 allow remote attackers to execute arbitrary code via format string specifiers in (1) FTP server responses or (2) data sent by an FTP server. NOTE: some of these details are obtained from third party information.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Nessus
NASL family | Windows |
NASL id | FILEZILLA_2232.NASL |
description | According to its version, the FileZilla FTP client installed on the remote host is affected by multiple format string vulnerabilities. Details on the issues are not currently available, but it is expected that exploitation would require a user visit a malicious FTP site using the affected software. |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 25039 |
published | 2007-04-18 |
reporter | This script is Copyright (C) 2007-2018 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/25039 |
title | FileZilla FTP Client < 2.2.32 Multiple Format Strings |
code |
|
References
- http://osvdb.org/34436
- http://osvdb.org/34436
- http://osvdb.org/34437
- http://osvdb.org/34437
- http://secunia.com/advisories/24894
- http://secunia.com/advisories/24894
- http://sourceforge.net/project/shownotes.php?release_id=501534&group_id=21558
- http://sourceforge.net/project/shownotes.php?release_id=501534&group_id=21558
- http://www.securityfocus.com/bid/23506
- http://www.securityfocus.com/bid/23506