FScan is a free network scanning utility distributed and maintained by Foundstone. This problem affects the version available for the Microsoft Windows platform. Under some circumstances, it may be possible to execute arbitrary code on a scanning host. This is due to FScan not properly handling banner data supplied by scanned hosts when the scanner is executed against them. This problem is the result of a format string vulnerability, and could lead to the overwriting arbitrary locations in memory, and execution of attacker supplied code.
FScan is a free network scanning utility distributed and maintained by Foundstone. This problem affects the version available for the Microsoft Windows platform. Under some circumstances, it may be possible to execute arbitrary code on a scanning host. This is due to FScan not properly handling banner data supplied by scanned hosts when the scanner is executed against them. This problem is the result of a format string vulnerability, and could lead to the overwriting arbitrary locations in memory, and execution of attacker supplied code.