OpenFTPD SITE MSG FTP Command Format String

This script is Copyright (C) 2004-2011 Tenable Network Security, Inc.


Synopsis :

The remote FTP server may be vulnerable to a format string attack.

Description :

The remote host is running OpenFTPD - an FTP server designed to help
file sharing (aka 'warez'). Some versions of this server are
vulnerable to a remote format string attack that could allow an
authenticated attacker to execute arbitrary code on the remote host.

Note that Nessus did not actually check for this flaw, so this might
be a false positive.

See also :

http://archives.neohapsis.com/archives/bugtraq/2004-08/0017.html
http://archives.neohapsis.com/archives/bugtraq/2004-07/0350.html

Solution :

Disable the remote service.

Risk factor :

Medium / CVSS Base Score : 6.5
(CVSS2#AV:N/AC:L/Au:S/C:P/I:P/A:P)
CVSS Temporal Score : 6.2
(CVSS2#E:F/RL:U/RC:ND)
Public Exploit Available : true

Family: FTP

Nessus Plugin ID: 14179 ()

Bugtraq ID: 10830

CVE ID: CVE-2004-2523