Back to search
CVE-2004-2523
Published: Oct 25, 2005
Modified: Aug 8, 2024
PUBLISHED
Description
Format string vulnerability in the msg command (cat_message function in msg.c) in OpenFTPD 0.30.2 and earlier allows remote authenticated users to execute arbitrary code via format string specifiers in the message argument.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
20040803 EXPLOIT for Re: [VSA0402] OpenFTPD format string vulnerability
mailing-list
x_refsource_BUGTRAQ
12174
third-party-advisory
x_refsource_SECUNIA
1010823
vdb-entry
x_refsource_SECTRACK
openftpd-ncftpformat-string(16843)
vdb-entry
x_refsource_XF
http://www.openftpd.org:9673/openftpd
x_refsource_CONFIRM
20040729 [VSA0402] OpenFTPD format string vulnerability
mailing-list
x_refsource_BUGTRAQ
8261
vdb-entry
x_refsource_OSVDB
10830
vdb-entry
x_refsource_BID
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now