CVE Database
/

CVE-2004-2523

Back to search

CVE-2004-2523

Published: Oct 25, 2005

Modified: Aug 8, 2024

PUBLISHED

Description

Format string vulnerability in the msg command (cat_message function in msg.c) in OpenFTPD 0.30.2 and earlier allows remote authenticated users to execute arbitrary code via format string specifiers in the message argument.

VendorProductVersions

n/a

n/a

affected
n/a

References

12174
third-party-advisory
x_refsource_SECUNIA
1010823
vdb-entry
x_refsource_SECTRACK
openftpd-ncftpformat-string(16843)
vdb-entry
x_refsource_XF
8261
vdb-entry
x_refsource_OSVDB
10830
vdb-entry
x_refsource_BID

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now