Summary
According to its version number, the remote WS_FTP server is vulnerable to multiple flaws.
A buffer overflow, caused by a vulnerability in the ALLO handler, an attacker can then execute arbitrary code
A flaw which allow an attacker to gain elevated privileges (SYSTEM level privileges) A local or remote attacker, with write privileges on a directory can create a specially crafted file containing a large REST argument and resulting to a denial of service
OVS only checked the version number in the server banner.
Solution
Upgrade to the latest version of this software.
Severity
Classification
-
CVE CVE-2004-1848, CVE-2004-1883, CVE-2004-1884, CVE-2004-1885, CVE-2004-1886 -
CVSS Base Score: 7.5
AV:N/AC:L/Au:N/C:P/I:P/A:P
Related Vulnerabilities