CVE-2007-1567
Stack-based buffer overflow in War FTP Daemon 1.65, and possibly earlier, allows remote attackers to cause a denial of service or execute arbitrary code via unspecified vectors, as demonstrated by warftp_165.tar by Immunity.
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 50.5%, higher than 99% of all known CVEs. Patch or mitigate before the next change window.
Description
Stack-based buffer overflow in War FTP Daemon 1.65, and possibly earlier, allows remote attackers to cause a denial of service or execute arbitrary code via unspecified vectors, as demonstrated by warftp_165.tar by Immunity. NOTE: this might be the same issue as CVE-1999-0256, CVE-2000-0131, or CVE-2006-2171, but due to Immunity's lack of details, this cannot be certain.
- CVSS 2.0
- 10.0 HIGHAV:N/AC:L/Au:N/C:C/I:C/A:C
- EPSS
- 50.55% probability · 99th percentile
- CISA KEV
- Not listed
- Affected
- war ftp daemon/war ftp daemon
- Source
- cve@mitre.org
References
- http://secunia.com/advisories/24494Vendor Advisory
- http://www.securityfocus.com/bid/22944
- http://www.vupen.com/english/advisories/2007/0933
- https://www.immunityinc.com/downloads/immpartners/warftp_165.tarPatch
- http://secunia.com/advisories/24494Vendor Advisory
- http://www.securityfocus.com/bid/22944
- http://www.vupen.com/english/advisories/2007/0933
- https://www.immunityinc.com/downloads/immpartners/warftp_165.tarPatch
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.