Description
Core FTP 2.0 build 653 contains a denial of service vulnerability in the PBSZ command that allows unauthenticated attackers to crash the service by sending a malformed command with an oversized buffer. Attackers can send a PBSZ command with a payload exceeding 211 bytes to trigger an access violation and crash the FTP server process.
Problem types
Missing Authentication for Critical Function
Product status
Credits
Hodorsec (hodorsec@protonmail.com / hodor@hodorsec.com)
References
www.exploit-db.com/exploits/46532 (ExploitDB-46532)
www.coreftp.com/ (Official Product Homepage)
coreftp.com/server/download/archive/CoreFTPServer653.exe (Product Reference)
www.vulncheck.com/...-pbsz-unauthenticated-denial-of-service (VulnCheck Advisory: Core FTP 2.0 build 653 PBSZ Unauthenticated Denial of Service)