Back to Database
Status published
High
CVE-2008-2573
Stack-based buffer overflow in SFTP in freeSSHd 1.2.1 allows remote...
Vulnerability Description
Stack-based buffer overflow in SFTP in freeSSHd 1.2.1 allows remote authenticated users to execute arbitrary code via a long directory name in an SSH_FXP_OPENDIR (aka opendir) command.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2008-2573
Credits & Attribution
No credits recorded in the NVD database.
References
- http://www.securityfocus.com/archive/1/493180/100/0/threaded
- http://www.vupen.com/english/advisories/2008/1711/references
- http://www.securitytracker.com/id?1020212
- https://www.exploit-db.com/exploits/5751
- https://www.exploit-db.com/exploits/5709
- http://secunia.com/advisories/30498
- http://www.securityfocus.com/bid/29453
More from freesshd
View All →CVE-2022-27052
FreeFtpd version 1.0.13 and below contains an unquoted service path...
High
7.8
CVE-2018-9853
Insecure access control in freeSSHd version 1.3.1 allows attackers to...
Critical
9.8
CVE-2017-1000475
FreeSSHd 1.3.1 version is vulnerable to an Unquoted Path Service...
High
7.8
CVE-2012-6066
freeSSHd.exe in freeSSHd through 1.2.6 allows remote attackers to bypass...
Critical
9.3
CVE-2009-3340
Unspecified vulnerability in FreeSSHD 1.2.4 allows remote attackers to cause...
Medium
5
Affected Vendor
freesshd
View all reports →Affected Software
freesshd
Vulnerable Versions:
1.2.1
Timeline
Official Publish:
June 6th, 2008
Last Modified:
August 7th, 2024
Added to House:
July 18th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.