exploits , vulnerabilities , articles , wu-ftpd /bin SITE EXEC Misconfiguration Vulnerability
| Title |
wu-ftpd /bin SITE EXEC Misconfiguration Vulnerability |
| Published |
1995-11-30-12:00AM |
| Updated |
1999-06-01-12:00AM |
| Class |
Configuration Error |
| CVE |
CVE-1999-0080 |
| Remote |
Yes |
| Local |
Yes |
| Credit |
Revealed by Olaf Kirch <okir@monad.swb.de> in a message dated May 31, 1995. |
| Vulnerable |
Washington University wuftpd 2.4.1 |
| Not Vulnerable |
Washington University wu-ftpd 2.6 .0
Cobalt Qube 1.0
Conectiva Linux 4.0
Conectiva Linux 4.0 es
Conectiva Linux 4.1
Conectiva Linux 4.2
Conectiva Linux 5.0
Conectiva Linux 5.1
Debian Linux 2.2
Debian Linux 2.2 68k
Debian Linux 2.2 alpha
Debian Linux 2.2 arm
Debian Linux 2.2 powerpc
Debian Linux 2.2 sparc
-
FreeBSD FreeBSD 4.3
-
FreeBSD FreeBSD 4.3 -RELEASE
-
FreeBSD FreeBSD 4.3 -STABLE
-
FreeBSD FreeBSD 4.4
HP HP-UX 11.0
HP HP-UX 11.11
RedHat Linux 5.2 alpha
RedHat Linux 5.2 i386
RedHat Linux 5.2 sparc
RedHat Linux 6.0
RedHat Linux 6.0 alpha
RedHat Linux 6.0 sparc
RedHat Linux 6.1 alpha
RedHat Linux 6.1 i386
RedHat Linux 6.1 sparc
RedHat Linux 6.2 alpha
RedHat Linux 6.2 i386
RedHat Linux 6.2 sparc
S.u.S.E. Linux 6.1
S.u.S.E. Linux 6.1 alpha
S.u.S.E. Linux 6.2
S.u.S.E. Linux 6.3
S.u.S.E. Linux 6.3 alpha
S.u.S.E. Linux 6.3 ppc
S.u.S.E. Linux 6.4
S.u.S.E. Linux 6.4 alpha
S.u.S.E. Linux 6.4 ppc
S.u.S.E. Linux 7.0 alpha
S.u.S.E. Linux 7.0 i386
S.u.S.E. Linux 7.0 ppc
S.u.S.E. Linux 7.0 sparc
S.u.S.E. Linux 7.1 alpha
S.u.S.E. Linux 7.1 ppc
S.u.S.E. Linux 7.1 sparc
S.u.S.E. Linux 7.1 x86
S.u.S.E. Linux 7.2 i386
S.u.S.E. Linux 7.3 i386
S.u.S.E. Linux 7.3 ppc
S.u.S.E. Linux 7.3 sparc
Turbolinux Turbolinux 4.0
Wirex Immunix OS 6.2
Washington University wu-ftpd 2.5 .0
Caldera OpenLinux 2.4
Caldera OpenLinux Desktop 2.3
RedHat Linux 6.0
RedHat Linux 6.0 alpha
RedHat Linux 6.0 sparc
SCO eDesktop 2.4
SCO eServer 2.3
SCO eServer 2.3.1
Washington University wu-ftpd 2.4.2 academ[BETA1-15]
Caldera OpenLinux Standard 1.2
Washington University wu-ftpd 2.4.2 academ[BETA-18]
RedHat Linux 5.2 i386
Washington University wu-ftpd 2.4.2 (beta 18) VR4 |
| Code |
To find out if your machine is affected, ftp to your own account, log in and enter this: quote "site exec bash -c id". If ftpd responds with a line that says something like "uid=0(root) euid=1234(your_login)... ", then your ftpd is vulnerable.
|
| TXT |
 |
|
Advertising
|