Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Heap-based buffer overflow in the TELNET_STREAM_CONTEXT::OnSendData function in ftpsvc.dll in Microsoft FTP Service 7.0 and 7.5 for Internet Information Services (IIS) 7.0, and IIS 7.5, allows remote attackers to execute arbitrary code or cause a denial of service (daemon crash) via a crafted FTP command, aka "IIS FTP Service Heap Buffer Overrun Vulnerability." NOTE: some of these details are obtained from third party information.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Microsoft IIS FTP服务堆缓冲区溢出漏洞
Vulnerability Description
IIS是Microsoft出品的一个广泛应用的Internet Web服务器软件,用来在网站上提供HTTP、FTP等的服务器程序,随Windows NT和Windows 2000捆绑发售。 Internet Information Services (IIS) 7.0和7.5版本的FTP服务7.0和7.5的ftpsvc.dll中的TELNET_STREAM_CONTEXT::OnSendData函数中存在基于堆的缓冲区溢出漏洞。远程攻击者可借助特制的FTP命令执行任意代码或导致拒绝服务(守护程序崩溃)。
CVSS Information
N/A
Vulnerability Type
N/A