Short Name |
FTP:COMMAND:FTP-FS-COMMAND |
---|---|
Severity |
Major |
Recommended |
No |
Recommended Action |
Drop |
Category |
FTP |
Keywords |
Format String in Command |
Release Date |
2010/05/24 |
Update Number |
1688 |
Supported Platforms |
idp-4.0+, isg-3.0+, j-series-9.5+, mx-11.4+, srx-12.1+, srx-branch-12.1+, vmx-17.4+, vsrx-12.1+, vsrx3bsd-18.2+ |
This signature detects attempts to exploit a known vulnerability against Multiple FTP Servers. Attackers can execute arbitrary code in the context of the server process.
Dream FTP Server is prone to a remote format-string vulnerability when processing a malicious request from a client. Exploiting this issue could allow an attacker to crash the server and possibly to execute arbitrary code on the system hosting the server. This would occur in the security context of the server process.