Vulnerability Development mailing list archives

Re: twlc advisory: possible overflow in ms ftp client


From: <whitehat () altern org>
Date: Tue, 6 Nov 2001 13:00:02 +0100 (CET)


The overflow can't be exploited.

I guess that a "ftp script" could be used to exploit the flaw.
The -s:filename option allows the use of scripts using ftp commands.
If you have suitable access to a script, you should modify it in order to have the script's owner smashing the stack 
for you.

 whitehat



Current thread: