6.4
CVE-2006-3768
- EPSS 5.25%
- Veröffentlicht 28.07.2006 23:04:00
- Zuletzt bearbeitet 16.06.2026 22:27:46
- Quelle PSIRT-CNA@flexerasoftware.com
- CVE-Watchlists
- Unerledigt
Integer underflow in filecpnt.exe in FileCOPA FTP Server 1.01 before 2006-07-21 allow remote authenticated users to execute arbitrary code via a long argument to the (1) CWD, (2) DELE, (3) MDTM, and (4) MKD commands, which triggers a stack-based buffer overflow.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Intervations ≫ Filecopa Version1.01
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 5.25% | 0.915 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 6.4 | 10 | 4.9 |
AV:N/AC:L/Au:N/C:P/I:P/A:N
|
http://secunia.com/advisories/21097
http://secunia.com/secunia_research/2006-55/advisory/
http://securityreason.com/securityalert/1300
http://www.kb.cert.org/vuls/id/713092
http://www.kb.cert.org/vuls/id/RGII-6TYN6M
http://www.osvdb.org/27486
http://www.securityfocus.com/archive/1/441207/100/0/threaded
http://www.securityfocus.com/bid/19153
http://www.vupen.com/english/advisories/2006/2960
https://exchange.xforce.ibmcloud.com/vulnerabilities/27941