Golden FTP Server < 2.7.0 Multiple Vulnerabilities

medium Nessus Network Monitor Plugin ID 3045

Synopsis

The remote host is vulnerable to multiple attack vectors.

Description

The remote host is running the Golden FTP Server, an FTP server for the Windows platform. This version of Golden FTP is vulnerable to a number of different flaws. An attacker exploiting these flaws would be able to either execute arbitrary code or cause the application to fail.

Solution

Upgrade to version 2.7.0 or higher.

See Also

http://securityreason.com/exploitalert/189

Plugin Details

Severity: Medium

ID: 3045

Family: FTP Servers

Published: 7/1/2005

Updated: 3/6/2019

Nessus ID: 18615

Risk Information

VPR

Risk Factor: Medium

Score: 6.3

CVSS v2

Risk Factor: Medium

Base Score: 5.2

Temporal Score: 4.7

Vector: CVSS2#AV:A/AC:L/Au:S/C:P/I:P/A:P

CVSS v3

Risk Factor: Medium

Base Score: 5.5

Temporal Score: 5.2

Vector: CVSS:3.0/AV:A/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L

Temporal Vector: CVSS:3.0/E:P/RL:U/RC:X

Vulnerability Information

CPE: cpe:/a:kmint21_software:golden_ftp_server

Reference Information

CVE: CVE-2005-2142, CVE-2005-4553, CVE-2006-2180

BID: 14124, 16060, 17801