SmallFTPd 1.0.3 - Remote Denial of Service

EDB-ID:

23716


Type:

dos


Platform:

Windows

Date:

2004-02-17


source: https://www.securityfocus.com/bid/9684/info

It has been reported that SmallFTPD is prone to a remote denial of service vulnerability. This issue is due to the application failing to properly validate user input. 

Successful exploitation of this issue may cause the affected server to crash, denying service to legitimate users. It has been conjectured that this issue may be due to a boundary management problem that may lead to arbitrary code execution, however this has yet to be verified.

ftp://www.example.com/user:pass@127.0.0.1/[464 and more "/" symbols]/../../../