{ "id": "CVE-2007-1731", "sourceIdentifier": "cve@mitre.org", "published": "2007-03-28T10:19:00.000", "lastModified": "2017-07-29T01:30:57.190", "vulnStatus": "Modified", "descriptions": [ { "lang": "en", "value": "Multiple stack-based buffer overflows in High Performance Anonymous FTP Server (hpaftpd) 1.01 allow remote attackers to execute arbitrary code via long arguments to the (1) USER, (2) PASS, (3) CWD, (4) MKD, (5) RMD, (6) DELE, (7) RNFR, or (8) RNTO FTP command." }, { "lang": "es", "value": "M\u00faltiples desbordamientos de b\u00fafer en High Performance Anonymous FTP Server (hpaftpd) 1.01 permite a atacantes remotos ejecutar c\u00f3digo de su elecci\u00f3n mediante argumentos largos en los comandos FTP (1) USER, (2) PASS, (3) CWD, (4) MKD, (5) RMD, (6) DELE, (7) RNFR, \u00f3 (8) RNTO." } ], "metrics": { "cvssMetricV2": [ { "source": "nvd@nist.gov", "type": "Primary", "cvssData": { "version": "2.0", "vectorString": "AV:N/AC:L/Au:N/C:C/I:C/A:C", "accessVector": "NETWORK", "accessComplexity": "LOW", "authentication": "NONE", "confidentialityImpact": "COMPLETE", "integrityImpact": "COMPLETE", "availabilityImpact": "COMPLETE", "baseScore": 10.0 }, "baseSeverity": "HIGH", "exploitabilityScore": 10.0, "impactScore": 10.0, "acInsufInfo": false, "obtainAllPrivilege": true, "obtainUserPrivilege": false, "obtainOtherPrivilege": false, "userInteractionRequired": false } ] }, "weaknesses": [ { "source": "nvd@nist.gov", "type": "Primary", "description": [ { "lang": "en", "value": "NVD-CWE-Other" } ] } ], "configurations": [ { "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:a:hpaftpd:hpaftpd:1.01:*:*:*:*:*:*:*", "matchCriteriaId": "D977A544-2ADE-4C5D-A43F-B6E0B3155B90" } ] } ] } ], "references": [ { "url": "http://www.securiteam.com/securitynews/5AP0L1PKUU.html", "source": "cve@mitre.org" }, { "url": "http://www.securityfocus.com/bid/23147", "source": "cve@mitre.org" }, { "url": "http://www.vupen.com/english/advisories/2007/1142", "source": "cve@mitre.org" }, { "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/33288", "source": "cve@mitre.org" } ] }