CVE-2004-0448 Information

Description

Format string vulnerability in the log function for jftpgw 0.13.4 and earlier allows remote authenticated users to execute arbitrary code via format string specifiers in certain syslog messages.

Reference

http://www.debian.org/security/2004/dsa-510 http://www.securityfocus.com/bid/10438 https://exchange.xforce.ibmcloud.com/vulnerabilities/16271

Share on: