CVE-2024-1017

A vulnerability was found in Gabriels FTP Server 1.2. It has been rated as problematic. This issue affects some unknown processing. The manipulation of the argument USERNAME leads to denial of service. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-252287.
References
Link Resource
https://packetstormsecurity.com/files/176714/Gabriels-FTP-Server-1.2-Denial-Of-Service.html Exploit Third Party Advisory VDB Entry
https://vuldb.com/?ctiid.252287 Permissions Required Third Party Advisory VDB Entry
https://vuldb.com/?id.252287 Third Party Advisory VDB Entry
https://www.youtube.com/watch?v=wwHuXfYS8yQ Exploit Third Party Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:gabriels_ftp_server_project:gabriels_ftp_server:1.2:*:*:*:*:*:*:*

History

13 Feb 2024, 19:49

Type Values Removed Values Added
CVSS v2 : 5.0
v3 : 5.3
v2 : 5.0
v3 : 7.5
First Time Gabriels Ftp Server Project gabriels Ftp Server
Gabriels Ftp Server Project
CPE cpe:2.3:a:gabriels_ftp_server_project:gabriels_ftp_server:1.2:*:*:*:*:*:*:*
References () https://packetstormsecurity.com/files/176714/Gabriels-FTP-Server-1.2-Denial-Of-Service.html - () https://packetstormsecurity.com/files/176714/Gabriels-FTP-Server-1.2-Denial-Of-Service.html - Exploit, Third Party Advisory, VDB Entry
References () https://vuldb.com/?ctiid.252287 - () https://vuldb.com/?ctiid.252287 - Permissions Required, Third Party Advisory, VDB Entry
References () https://vuldb.com/?id.252287 - () https://vuldb.com/?id.252287 - Third Party Advisory, VDB Entry
References () https://www.youtube.com/watch?v=wwHuXfYS8yQ - () https://www.youtube.com/watch?v=wwHuXfYS8yQ - Exploit, Third Party Advisory

30 Jan 2024, 14:18

Type Values Removed Values Added
Summary
  • (es) Se encontró una vulnerabilidad en Gabriels FTP Server 1.2. Ha sido calificada como problemática. Este problema afecta algún procesamiento desconocido. La manipulación del argumento USERNAME conduce a la denegación de servicio. El ataque puede iniciarse de forma remota. La explotación ha sido divulgada al público y puede utilizarse. Se recomienda aplicar un parche para solucionar este problema. El identificador asociado de esta vulnerabilidad es VDB-252287.

29 Jan 2024, 19:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-01-29 19:15

Updated : 2024-04-11 01:24


NVD link : CVE-2024-1017

Mitre link : CVE-2024-1017

CVE.ORG link : CVE-2024-1017


JSON object : View

Products Affected

gabriels_ftp_server_project

  • gabriels_ftp_server
CWE
CWE-404

Improper Resource Shutdown or Release