CVE-2004-0185

6 documents6 sources
Severity
10.0CRITICAL
EPSS
8.6%
top 7.58%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMar 15
Latest updateMay 3

Description

Buffer overflow in the skey_challenge function in ftpd.c for wu-ftp daemon (wu-ftpd) 2.6.2 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a s/key (SKEY) request with a long name.

CVSS vector

AV:N/AC:L/C:C/I:C/A:CExploitability: 10.0 | Impact: 10.0

Affected Packages1 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-c878-8cvq-qfv7: Buffer overflow in the skey_challenge function in ftpd2022-05-03
CVEList
CVE-2004-0185: Buffer overflow in the skey_challenge function in ftpd2004-09-01

💥Exploits & PoCs

1
Exploit-DB
NodeManager Professional 2.00 - Remote Buffer Overflow2005-01-18

📋Vendor Advisories

1
Red Hat
security flaw2004-03-08

💬Community

1
Bugzilla
CVE-2004-0185 security flaw2018-08-16