Core FTP / SFTP Server v2 Build 725 was discovered to allow unauthenticated attackers to cause a Denial of Service (DoS) via a crafted packet through the SSH service.
The product writes data past the end, or before the beginning, of the intended buffer.
Link | Tags |
---|---|
http://coreftp.com/forums/viewtopic.php?f=15&t=4022509 | vendor advisory |
https://yoursecuritybores.me/coreftp-vulnerabilities/ | third party advisory exploit |
http://coreftp.com | product |