📄 2344.txt
字号:
Rule: --Sid:2344--Summary:This event is generated when an attempt is made to exploit a knownvulnerability in ArGoSoft FTP Server.--Impact:Execution of arbitrary code. Possible unauthorized administrative access.--Detailed Information:ArGoSoft FTP Server fails to perform sufficient checks on user supplied data to theXCWD command. An attacker may exploit this vulnerability to execute code oftheir choosing as the user running the process. This may lead to remoteadministrative access to the server.--Affected Systems: ArGoSoft FTP Server 1.4.1 .1--Attack Scenarios:An attacker may connect to the server and supply spurious data to theXCWD command causing the overrun to occur.--Ease of Attack:Simple.--False Positives:None known.--False Negatives:None known.--Corrective Action:Apply the appropriate vendor supplied patches.Upgrade to the latest non-affected version of the software.--Contributors:Sourcefire Research TeamBrian Caswell <bmc@sourcefire.com>Nigel Houghton <nigel.houghton@sourcefire.com>-- Additional References:--
⌨️ 快捷键说明
复制代码
Ctrl + C
搜索代码
Ctrl + F
全屏模式
F11
切换主题
Ctrl + Shift + D
显示快捷键
?
增大字号
Ctrl + =
减小字号
Ctrl + -