Vulnerability Name:

CVE-2009-4775 (CCN-53098)

Assigned:2009-09-07
Published:2009-09-07
Updated:2017-09-19
Summary:Format string vulnerability in Ipswitch WS_FTP Professional 12 before 12.2 allows remote attackers to cause a denial of service (crash) via format string specifiers in the status code portion of an HTTP response.
CVSS v3 Severity:7.3 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): Low
Integrity (I): Low
Availibility (A): Low
CVSS v2 Severity:4.3 Medium (CVSS v2 Vector: AV:N/AC:M/Au:N/C:N/I:N/A:P)
3.4 Low (Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:N/I:N/A:P/E:POC/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Medium
Authentication (Au): None
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): Partial
6.8 Medium (CCN CVSS v2 Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P)
5.3 Medium (CCN Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P/E:POC/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Medium
Athentication (Au): None
Impact Metrics:Confidentiality (C): Partial
Integrity (I): Partial
Availibility (A): Partial
Vulnerability Type:CWE-134
Vulnerability Consequences:Gain Access
References:Source: MITRE
Type: CNA
CVE-2009-4775

Source: CONFIRM
Type: UNKNOWN
http://docs.ipswitch.com/WS_FTP%20122/ReleaseNotes/English/index.htm?k_id=ipswitch_com_ftp_documents_worldwide_ws_ftp122releasenotesenglish#link23

Source: EXPLOIT-DB
Type: UNKNOWN
9607

Source: CCN
Type: Ipswitch Web site
Ipswitch WS_FTP Professional

Source: CCN
Type: OSVDB ID: 64036
WS_FTP Professional HTTP Response Status Code Format String DoS

Source: CCN
Type: Packet Storm Web Site
Ipswitch WS_FTP 12 Professional Remote Format String 0day PoC

Source: MISC
Type: Exploit
http://www.packetstormsecurity.org/0909-exploits/nocoolnameforawsftppoc.pl.txt

Source: BID
Type: Exploit
36297

Source: CCN
Type: BID-36297
Ipswitch WS_FTP Professional HTTP Server Response Format String Vulnerability

Source: XF
Type: UNKNOWN
wsftp-http-format-string(53098)

Source: XF
Type: UNKNOWN
wsftp-http-format-string(53098)

Vulnerable Configuration:Configuration 1:
  • cpe:/a:ipswitch:ws_ftp:12.0:-:home:*:*:*:*:*
  • OR cpe:/a:ipswitch:ws_ftp:12.0:-:pro:*:*:*:*:*
  • OR cpe:/a:ipswitch:ws_ftp:12.0.1:-:home:*:*:*:*:*
  • OR cpe:/a:ipswitch:ws_ftp:12.0.1:-:pro:*:*:*:*:*

  • * Denotes that component is vulnerable
    BACK
    ipswitch ws ftp 12.0 -
    ipswitch ws ftp 12.0 -
    ipswitch ws ftp 12.0.1 -
    ipswitch ws ftp 12.0.1 -