FTP: Cisco IOS FTP Server Remote Overflow

This signature detects attempts to exploit a known vulnerability in Cisco IOS FTP Server. A successful attack could allow the attacker to execute arbitrary code on the targeted system. Failed exploit attempts could result in a denial of service condition.

Extended Description

Cisco IOS FTP Server is prone to multiple vulnerabilities including a denial-of-service issue and an authentication-bypass issue. Attackers can exploit these issues to deny service to legitimate users, gain unauthorized access to an affected device, or execute arbitrary code. Only IOS devices that have the FTP Server feature enabled are vulnerable; this feature is disabled by default.

Affected Products

Cisco ios

References

BugTraq: 23885

CVE: CVE-2007-2586

Short Name
FTP:DIRECTORY:CISCOFTP-OF
Severity
Major
Recommended
False
Recommended Action
Drop
Category
FTP
Keywords
CVE-2007-2586 Cisco FTP IOS Overflow Remote Server bid:23885
Release Date
03/20/2009
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3336
False Positive
Unknown
Vendors

Cisco

CVSS Score

9.3

Found a potential security threat?