Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
IPFilter 3.1.1 through 3.4.28 allows remote attackers to bypass firewall rules by sending a PASV command string as the argument of another command to an FTP server, which generates a response that contains the string, causing IPFilter to treat the response as if it were a legitimate PASV command from the server.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
IPFilter FTP代理未授权访问漏洞
Vulnerability Description
IPFilter是一款免费的开放源代码的防火墙程序,由Darren Reed编写,可使用在多种Unix和Linux操作系统平台下。 IPFilter FTP代理存在设计缺陷,远程攻击者可以利用这个漏洞在FTP服务器上打开端口。 IPFilter 3.4.29以前的版本FTP代理设计存在问题,在部分环境下,如果系统运行了FTP服务程序,攻击者可以欺骗有漏洞IPFilter程序打开端口,允许从客户端到客户端之间回应文本字符。
CVSS Information
N/A
Vulnerability Type
N/A