Preface: FTP CWD ~root commandLogo -Internet Security Systems

FTP CWD ~root command

advICE :Intrusions : 2001304
 FAQ
Oh my gosh, I'm being HACKED!!!
How do I report the hacker to my ISP?
I'm seeing lots of attacks, is this normal?
Summary

Intrusion attempt.

Details

Old versions of FTP servers support this command, which permits undesirable access to the server.

 more information
advICE: FTP defense  
How to harden an FTP server against Internet attacks.  
advICE: FTP exploits  
A list of common ways that intruders break into FTP servers.  
Improving the Security of Your Site by Breaking Into it  
by Dan Farmer and Wietse Venema  
CVE-1999-0082   CWD ~root command in ftpd allows root access.
 

 parametric information
lengthThe length of the directory name; if it is longer than a few hundred characters, then it may be a buffer overflow attempt.
directoryThe initial portion of the directory name.

 
Version appeared:  

Privacy Policy |  Copyright Info