TYPSoft FTP Server Crafted RETR Command Sequence Remote DoS

medium Nessus Plugin ID 14699

Synopsis

The remote host has an application that is affected by a denial of service vulnerability.

Description

The remote host seems to be running TYPSoft FTP 1.11 or earlier. TYPSoft FTP Server is prone to a remote denial of service vulnerability that may allow an attacker to cause the server to crash by sending a malformed 'RETR' command to the remote server

Solution

Use a different FTP server or upgrade to the newest version.

Plugin Details

Severity: Medium

ID: 14699

File Name: typsoftftp_retr_dos.nasl

Version: 1.14

Type: remote

Family: FTP

Published: 9/9/2004

Updated: 8/8/2018

Supported Sensors: Nessus

Risk Information

CVSS v2

Risk Factor: Medium

Base Score: 5

Temporal Score: 3.7

Vector: CVSS2#AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Information

Required KB Items: ftp/typsoftftp

Exploit Available: true

Exploit Ease: No exploit is required

Vulnerability Publication Date: 8/31/2004

Reference Information

BID: 11131