Lucene search

K
cve[email protected]CVE-2006-5000
HistorySep 26, 2006 - 8:07 p.m.

CVE-2006-5000

2006-09-2620:07:00
web.nvd.nist.gov
14
ws_ftp server
buffer overflow
remote attack
authenticated
cve-2006-5000

6.5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:S/C:P/I:P/A:P

6.6 Medium

AI Score

Confidence

Low

0.966 High

EPSS

Percentile

99.6%

Multiple buffer overflows in WS_FTP Server 5.05 before Hotfix 1, and possibly other versions down to 5.0, have unknown impact and remote authenticated attack vectors via the (1) XCRC, (2) XMD5, and (3) XSHA1 commands. NOTE: in the early publication of this identifier on 20060926, the description was used for the wrong issue.

Affected configurations

NVD
Node
ipswitchws_ftp_serverMatch5.02
OR
ipswitchws_ftp_serverMatch5.03
OR
ipswitchws_ftp_serverMatch5.05
OR
progressws_ftp_serverMatch5.0.2

6.5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:S/C:P/I:P/A:P

6.6 Medium

AI Score

Confidence

Low

0.966 High

EPSS

Percentile

99.6%

Related for CVE-2006-5000