10

CVE-2001-0247

Exploit

Buffer overflows in BSD-based FTP servers allows remote attackers to execute arbitrary commands via a long pattern string containing a {} sequence, as seen in (1) g_opendir, (2) g_lstat, (3) g_stat, and (4) the glob0 buffer as used in the glob functions glob2 and glob3.

Data is provided by the National Vulnerability Database (NVD)
MitKerberos 5 Version1.1.1
MitKerberos 5 Version1.2
MitKerberos 5 Version1.2.1
MitKerberos 5 Version1.2.2
SgiIrix Version6.1
SgiIrix Version6.5.1
SgiIrix Version6.5.2m
SgiIrix Version6.5.3
SgiIrix Version6.5.3f
SgiIrix Version6.5.3m
SgiIrix Version6.5.4
SgiIrix Version6.5.5
SgiIrix Version6.5.6
SgiIrix Version6.5.7
SgiIrix Version6.5.8
SgiIrix Version6.5.10
SgiIrix Version6.5.11
FreebsdFreebsd Version2.2
FreebsdFreebsd Version2.2.2
FreebsdFreebsd Version2.2.3
FreebsdFreebsd Version2.2.4
FreebsdFreebsd Version2.2.5
FreebsdFreebsd Version2.2.6
FreebsdFreebsd Version2.2.8
FreebsdFreebsd Version3.0
FreebsdFreebsd Version3.1
FreebsdFreebsd Version3.2
FreebsdFreebsd Version3.3
FreebsdFreebsd Version3.4
FreebsdFreebsd Version3.5
FreebsdFreebsd Version3.5.1
FreebsdFreebsd Version4.0
FreebsdFreebsd Version4.1
FreebsdFreebsd Version4.1.1
FreebsdFreebsd Version4.2
NetbsdNetbsd Version1.2.1
NetbsdNetbsd Version1.3
NetbsdNetbsd Version1.3.1
NetbsdNetbsd Version1.3.2
NetbsdNetbsd Version1.3.3
NetbsdNetbsd Version1.4
NetbsdNetbsd Version1.4.1
NetbsdNetbsd Version1.4.2
NetbsdNetbsd Version1.4.3
NetbsdNetbsd Version1.5
OpenbsdOpenbsd Version2.3
OpenbsdOpenbsd Version2.4
OpenbsdOpenbsd Version2.5
OpenbsdOpenbsd Version2.6
OpenbsdOpenbsd Version2.7
OpenbsdOpenbsd Version2.8
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 35.17% 0.966
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 10 10 10
AV:N/AC:L/Au:N/C:C/I:C/A:C