Lucene search

K
securityvulnsSecurityvulnsSECURITYVULNS:DOC:11172
HistoryJan 25, 2006 - 12:00 a.m.

samiftpd buffer overflow

2006-01-2500:00:00
vulners.com
5

Sami FTP server buffer overflow (in english)
Critical Security advisory #007 - 2006-01-24 16:20:08

Product: Sami FTP 2.0.1
Vuln type: Stack based buffer overflow
Risk: Medium
Attack: Remote
Original advisory: http://www.critical.lt/?vulnerabilities/208

Sami FTP Server buffer overflow vulnerability

Product site: http://www.karjasoft.com/samiftp

Server is affected by a buffer overflow due to insufficient sanitization
of user input, vulnerable parameter - USER. Vulnerability
is triggered when someone tries to view server log.

Proof Of Concept code execution exploit:
http://www.critical.lt/research/sami_ftp_poc.txt