VulnerabilityModified
CVE-2007-3823
The Logging Server (Logsrv.exe) in IPSwitch WS_FTP 7.5.29.0 allows remote attackers to cause a denial of service (daemon crash) by sending a crafted packet containing a long string to port 5151/udp.
HIGH 7.8EPSS 25.2%
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 25.2%, higher than 98% of all known CVEs. Patch or mitigate before the next change window.
Description
The Logging Server (Logsrv.exe) in IPSwitch WS_FTP 7.5.29.0 allows remote attackers to cause a denial of service (daemon crash) by sending a crafted packet containing a long string to port 5151/udp.
- CVSS 2.0
- 7.8 HIGHAV:N/AC:L/Au:N/C:N/I:N/A:C
- EPSS
- 25.17% probability · 98th percentile
- CISA KEV
- Not listed
- Affected
- ipswitch/ws ftp
- Source
- cve@mitre.org
References
- http://packetstormsecurity.org/0707-advisories/wsftp75290-dos.txt
- http://secunia.com/advisories/26040Vendor Advisory
- http://www.osvdb.org/36218
- http://www.vdalabs.com/tools/ipswitch.html
- https://exchange.xforce.ibmcloud.com/vulnerabilities/35396
- http://packetstormsecurity.org/0707-advisories/wsftp75290-dos.txt
- http://secunia.com/advisories/26040Vendor Advisory
- http://www.osvdb.org/36218
- http://www.vdalabs.com/tools/ipswitch.html
- https://exchange.xforce.ibmcloud.com/vulnerabilities/35396
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.