Cerberus FTP 1.5 and earlier allows remote attackers to cause a denial of service, and possibly execute arbitrary code, via a long (1) username, (2) password, or (3) PASV command.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Ceberus_ftp_server | Grant_averett | 1.0 (including) | 1.0 (including) |
Ceberus_ftp_server | Grant_averett | 1.1 (including) | 1.1 (including) |
Ceberus_ftp_server | Grant_averett | 1.01 (including) | 1.01 (including) |
Ceberus_ftp_server | Grant_averett | 1.2 (including) | 1.2 (including) |
Ceberus_ftp_server | Grant_averett | 1.3 (including) | 1.3 (including) |
Ceberus_ftp_server | Grant_averett | 1.5 (including) | 1.5 (including) |
Ceberus_ftp_server | Grant_averett | 1.22 (including) | 1.22 (including) |