Stack-based buffer overflow in WFTPD Pro Server 3.21 Release 1, Pro Server 3.20 Release 2, Server 3.21 Release 1, and Server 3.10 allows local users to execute arbitrary code via long (1) LIST, (2) NLST, or (3) STAT commands.
2004-11-23T05:00:00.000
2025-04-03T01:03:51.193
Deferred
CVSSv2: 7.2 (HIGH)
AV:L/AC:L/Au:N/C:C/I:C/A:C
3.9
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | texas_imperial_software | wftpd | 3.0 | Yes |
Application | texas_imperial_software | wftpd | 3.0 | Yes |
Application | texas_imperial_software | wftpd | 3.0_0r3 | Yes |
Application | texas_imperial_software | wftpd | 3.0_0r4 | Yes |
Application | texas_imperial_software | wftpd | 3.0_0r4 | Yes |
Application | texas_imperial_software | wftpd | 3.0_0r5 | Yes |
Application | texas_imperial_software | wftpd | 3.0_0r5 | Yes |
Application | texas_imperial_software | wftpd | 3.10_r1 | Yes |
Application | texas_imperial_software | wftpd | 3.20 | Yes |
Application | texas_imperial_software | wftpd | 3.21 | Yes |
Application | texas_imperial_software | wftpd | pro_3.10_r1 | Yes |
Application | texas_imperial_software | wftpd | pro_3.20 | Yes |
Application | texas_imperial_software | wftpd | pro_3.21 | Yes |