FTP: Multiple Vendor FTP MKD Command Buffer Overflow
This signature detects attempts to exploit known vulnerabilities against multiple FTP Servers. A successful attack can cause a denial-of-service condition or execute arbitrary code on the victim's server.
Extended Description
CesarFTP is prone to a buffer-overflow vulnerability when handling data through the MKD command. Reportedly, passing excessive data may overflow a finite-sized internal memory buffer. A successful attack may result in memory corruption as memory adjacent to the buffer is overwritten with user-supplied data. This issue may lead to a denial-of-service condition or to the execution of arbitrary code. CesarFTP 0.99g is vulnerable; other versions may also be affected.
Affected Products
Aclogic cesarftp
srx-branch-12.3
srx-19.3
srx-branch-19.3
vsrx3bsd-19.2
srx-branch-19.4
vsrx-19.4
mx-12.3
mx-19.4
vmx-19.4
mx-19.3
vsrx3bsd-19.4
srx-19.4
vsrx-12.3
vmx-19.3
vsrx-19.2
srx-12.3
Aclogic
7.5