Golden FTP Server Pro Multiple Command Remote Overflow DoS

Medium Nessus Plugin ID 21325


The remote FTP server is affected by a buffer overflow flaw.


The remote host appears to be using Golden FTP Server, a personal FTP server for Windows.

The version of Golden FTP Server installed on the remote host contains a buffer overflow vulnerability that can be exploited by an authenticated, possibly anonymous, user with a specially crafted NLST command to crash the affected application or execute arbitrary code on the affected host.


Unknown at this time.

See Also

Plugin Details

Severity: Medium

ID: 21325

File Name: golden_ftp_server_nlst_overflow.nasl

Version: $Revision: 1.18 $

Type: remote

Family: FTP

Published: 2006/05/04

Modified: 2016/10/10

Dependencies: 10092

Risk Information

Risk Factor: Medium


Base Score: 6.4

Temporal Score: 5.8

Vector: CVSS2#AV:N/AC:L/Au:N/C:N/I:P/A:P

Temporal Vector: CVSS2#E:POC/RL:U/RC:ND

Vulnerability Information

CPE: cpe:/a:kmint21_software:golden_ftp_server

Required KB Items: ftp/login, ftp/password

Exploit Available: true

Exploit Ease: Exploits are available

Vulnerability Publication Date: 2006/05/01

Reference Information

CVE: CVE-2006-2180

BID: 17801

OSVDB: 25217

CWE: 119