cve/2006/CVE-2006-2407.md

19 lines
792 B
Markdown
Raw Normal View History

2024-05-26 14:27:05 +02:00
### [CVE-2006-2407](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-2407)
![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brighgreen)
### Description
Stack-based buffer overflow in (1) WeOnlyDo wodSSHServer ActiveX Component 1.2.7 and 1.3.3 DEMO, as used in other products including (2) FreeSSHd 1.0.9 and (3) freeFTPd 1.0.10, allows remote attackers to execute arbitrary code via a long key exchange algorithm string.
### POC
#### Reference
- http://marc.info/?l=full-disclosure&m=114764338702488&w=2
- http://securityreason.com/securityalert/901
#### Github
No PoCs found on GitHub currently.