Description
YATinyWinFTP contains a denial of service vulnerability that allows attackers to crash the FTP service by sending a 272-byte buffer with a trailing space. Attackers can exploit the service by connecting and sending a malformed command that triggers a buffer overflow and service crash.
Problem types
Product status
Credits
strider
References
www.exploit-db.com/exploits/49127
www.exploit-db.com/exploits/49127 (ExploitDB-49127)
github.com/ik80/YATinyWinFTP (YATinyWinFTP GitHub Repository)
www.vulncheck.com/advisories/yatinywinftp-denial-of-service (VulnCheck Advisory: YATinyWinFTP - Denial of Service)