[34221] in bugtraq
Re: Open the WS_FTP Server backdoor to SYSTEM
daemon@ATHENA.MIT.EDU (Todd C. Campbell)
Tue Mar 23 16:21:50 2004
Date: Tue, 23 Mar 2004 14:30:09 -0500
From: "Todd C. Campbell" <todd.campbell@core.com>
To: Hugh Mann <hughmann@hotmail.com>
Cc: full-disclosure@lists.netsys.com, bugtraq@securityfocus.com,
info@ipswitch.com, secure@ipswitch.com
Message-ID: <20040323193009.GA14991@voyager.net>
Mime-Version: 1.0
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline
In-Reply-To: <BAY1-F28Q8UmUgS8Lci00000465@hotmail.com>
I don't see the date you contacted Ipswitch. Did they respond?
Do they have an estemate on when this will be addressed?
-tidd
On Tue, Mar 23, 2004 at 07:11:58AM +0000, Hugh Mann wrote:
> ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
> Advisory Name: Open the WS_FTP Server backdoor to SYSTEM
> Impact : Privilege escalation
> Discovered by: Hugh Mann hughmann@hotmail.com
> Tested progs : Ipswitch WS_FTP Server 4.0.2.EVAL
> ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~