Full Disclosure mailing list archives

Another ProFTPd root EXPLOIT ?


From: Stephen <alf1num3rik () yahoo com>
Date: Tue, 14 Oct 2003 13:37:46 -0700 (PDT)

/*
*  -- ProFTPd [1.2.7-1.2.8] proof-of-concept --
*  
*  This code is quite ugly, don't have time cleaning
it;
*   
*  description: iss gave a lil hint to me, so i found
the vuln
*  in src/data.c file, xlate_ascii_write()  function
*  when the iss advisory came out.

http://www.k-otik.com/exploits/10.14.pfpoc.c.php

known or new vuln ?

__________________________________
Do you Yahoo!?
The New Yahoo! Shopping - with improved product search
http://shopping.yahoo.com

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html


Current thread: