CVE-2007-0666: Medium severity Ipswitch Ws Ftp Server vulnerability
Published Feb 2, 2007
·Updated
Ipswitch WSFTP Server 5.04 allows FTP site administrators to execute arbitrary code on the system via a long input string to the (1) iFTPAddU or (2) iFTPAddH file, or to a (3) edition module.
Affected Software
1 affected component
Ipswitch Ws Ftp Server=5.04
Event History
Feb 2, 2007
CVE Published
09:28 PM
Feb 3, 2007
CVE Published
via MITRE·02:00 AM
Data Sourced
via MITRE·02:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-0666?
CVE-2007-0666 is classified as critical due to its potential to allow arbitrary code execution.
2
How do I fix CVE-2007-0666?
To fix CVE-2007-0666, it is recommended to upgrade to a patched version of Ipswitch WS_FTP Server.
3
What versions of Ipswitch WS_FTP Server are affected by CVE-2007-0666?
CVE-2007-0666 specifically affects Ipswitch WS_FTP Server version 5.04.
4
What types of attacks can exploit CVE-2007-0666?
CVE-2007-0666 can be exploited through crafted long input strings provided to specific FTP site administration modules.
5
Is there a workaround for CVE-2007-0666?
There are no specific workarounds for CVE-2007-0666, making upgrade the primary mitigation strategy.