CVE-2013-4742

Buffer overflow in NetWin SurgeFTP before 23d2 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a long string within the authentication request.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:netwin:surgeftp:*:*:*:*:*:*:*:*
cpe:2.3:a:netwin:surgeftp:2.0c:*:*:*:*:*:*:*
cpe:2.3:a:netwin:surgeftp:2.0d:*:*:*:*:*:*:*
cpe:2.3:a:netwin:surgeftp:2.0e:*:*:*:*:*:*:*
cpe:2.3:a:netwin:surgeftp:2.0f:*:*:*:*:*:*:*
cpe:2.3:a:netwin:surgeftp:2.2k1:*:*:*:*:*:*:*
cpe:2.3:a:netwin:surgeftp:2.2k3:*:*:*:*:*:*:*
cpe:2.3:a:netwin:surgeftp:2.2m1:*:*:*:*:*:*:*
cpe:2.3:a:netwin:surgeftp:2.3a1:*:*:*:*:*:*:*
cpe:2.3:a:netwin:surgeftp:2.3a2:*:*:*:*:*:*:*
cpe:2.3:a:netwin:surgeftp:2.3a6:*:*:*:*:*:*:*
cpe:2.3:a:netwin:surgeftp:2.3a7:*:*:*:*:*:*:*
cpe:2.3:a:netwin:surgeftp:2.3a8:*:*:*:*:*:*:*
cpe:2.3:a:netwin:surgeftp:2.3a9:*:*:*:*:*:*:*
cpe:2.3:a:netwin:surgeftp:2.3a10:*:*:*:*:*:*:*
cpe:2.3:a:netwin:surgeftp:2.3a12:*:*:*:*:*:*:*

History

21 Nov 2024, 01:56

Type Values Removed Values Added
References () http://archives.neohapsis.com/archives/bugtraq/2013-07/0149.html - () http://archives.neohapsis.com/archives/bugtraq/2013-07/0149.html -
References () http://osvdb.org/95582 - () http://osvdb.org/95582 -
References () http://secunia.com/advisories/54188 - Vendor Advisory () http://secunia.com/advisories/54188 - Vendor Advisory
References () http://www.securityfocus.com/bid/61403 - () http://www.securityfocus.com/bid/61403 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/85922 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/85922 -

Information

Published : 2013-08-09 21:55

Updated : 2024-11-21 01:56


NVD link : CVE-2013-4742

Mitre link : CVE-2013-4742

CVE.ORG link : CVE-2013-4742


JSON object : View

Products Affected

netwin

  • surgeftp
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer