{ "schema_version": "1.4.0", "id": "GHSA-gc7w-7m76-2gc2", "modified": "2022-05-17T01:50:50Z", "published": "2022-05-17T01:50:50Z", "aliases": [ "CVE-2011-5166" ], "details": "Multiple stack-based buffer overflows in KnFTP 1.0.0 allow remote attackers to execute arbitrary code via a long string to the (1) USER, (2) PASS, (3) REIN, (4) QUIT, (5) PORT, (6) PASV, (7) TYPE, (8) STRU, (9) MODE, (10) RETR, (11) STOR, (12) APPE, (13) ALLO, (14) REST, (15) RNFR, (16) RNTO, (17) ABOR, (18) DELE, (19) CWD, (20) LIST, (21) NLST, (22) SITE, (23) STST, (24) HELP, (25) NOOP, (26) MKD, (27) RMD, (28) PWD, (29) CDUP, (30) STOU, (31) SNMT, (32) SYST, and (33) XPWD commands.", "severity": [], "affected": [], "references": [ { "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2011-5166" }, { "type": "WEB", "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/69557" }, { "type": "WEB", "url": "http://archives.neohapsis.com/archives/bugtraq/2011-09/0015.html" }, { "type": "WEB", "url": "http://secunia.com/advisories/45907" }, { "type": "WEB", "url": "http://www.exploit-db.com/exploits/17819" }, { "type": "WEB", "url": "http://www.exploit-db.com/exploits/17856" }, { "type": "WEB", "url": "http://www.exploit-db.com/exploits/17870" }, { "type": "WEB", "url": "http://www.exploit-db.com/exploits/18089" }, { "type": "WEB", "url": "http://www.osvdb.org/75147" } ], "database_specific": { "cwe_ids": [ "CWE-119" ], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2012-09-15T17:55:00Z" } }