Format string vulnerability in hsftp 1.11 allows remote authenticated users to cause a denial of service and possibly execute arbitrary code via file names containing format string characters that are not properly handled when executing an "ls" command.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2004-03-14 21:00
Updated : 2017-10-09 18:30
NVD link : CVE-2004-0159
Mitre link : CVE-2004-0159
JSON object : View
CWE
Products Affected
samhain_labs
- hsftp