HSFTP Hostname Command Line Argument...

- AV AC AU C I A
发布: 2003-12-07
修订: 2025-04-13

hsftp is prone to a locally exploitable buffer overrun vulnerability due to insufficient bounds checking of hostname arguments supplied as command line input. In situations where hsftp is installed setuid root and not configured to drop privileges, this could be exploited to execute arbitrary code with elevated privileges.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息