First published: Thu Jan 18 2007(Updated: )
Buffer overflow in wsbho2k0.dll, as used by wsftpurl.exe, in Ipswitch WS_FTP 2007 Professional allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a long ftp:// URL in an HTML document, and possibly other vectors.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Ipswitch WS FTP | =2007 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-0330 has a high severity rating due to its potential for remote code execution and denial of service.
To fix CVE-2007-0330, update to the latest version of Ipswitch WS_FTP Professional that addresses this vulnerability.
CVE-2007-0330 affects Ipswitch WS_FTP Professional 2007 and potentially other related components.
The potential consequences of CVE-2007-0330 include application crashes and the execution of arbitrary code by attackers.
Yes, CVE-2007-0330 can be exploited remotely through specially crafted ftp:// URLs.