FTP: Vulnerable Ipswitch WS_FTP Version (< 4.0.3)

This signature detects Ipswitch WS_FTP 4.0.2 and earlier versions. Attackers can exploit multiple vulnerabilities found in these versions to remotely run malicous code on the server.

Extended Description

Multiple vulnerabilities have been identified in the WS_FTP Server and client applications. These vulnerabilities may allow remote attackers to execute arbitrary code, cause denial of service attacks and gain administrative level access to a server. The issues include two remote buffer overflow vulnerabilities in the client, a denial of service vulnerability in the server and an access validation issue in the server leading to remote command execution with SYSTEM privileges. These issues are undergoing further analysis. This BID will be divided into separate issues as analysis is completed.

Affected Products

Ipswitch ws_ftp_server

References

BugTraq: 9953

CVE: CVE-2004-1885

Short Name
FTP:VULN:WS-FTP-4-0-2
Severity
Info
Recommended
False
Recommended Action
None
Category
FTP
Keywords
(< 4.0.3) CVE-2004-1885 CVE-2004-1886 Ipswitch Version Vulnerable WS_FTP bid:9953
Release Date
01/24/2005
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3375
False Positive
Rarely
Vendors

Ipswitch

CVSS Score

7.2

Found a potential security threat?