Back to Database
Status published
Medium
CVE-2009-5141
Format string vulnerability in War FTP Daemon (warftpd) 1.82 RC...
Vulnerability Description
Format string vulnerability in War FTP Daemon (warftpd) 1.82 RC 12 allows remote authenticated users to cause a denial of service (crash) via format string specifiers in a LIST command.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2009-5141
Credits & Attribution
No credits recorded in the NVD database.
References
- http://www.osvdb.org/62599
- http://www.exploit-db.com/exploits/9622
- http://archives.neohapsis.com/archives/bugtraq/2009-09/0105.html
- http://www.warftp.org/index.php?menu=338&cmd=show_article&article_id=1003
- https://www.corelan.be/index.php/forum/security-advisories-archive-2009/corelan-09001-warftpd-1-82-rc12-dos/
More from jgaa
View All →CVE-2013-2278
Unspecified vulnerability in War FTP Daemon (warftpd) 1.82, when running...
Critical
10
CVE-2006-5789
War FTP Daemon (WarFTPd) 1.82.00-RC11 allows remote authenticated users to...
Medium
4
CVE-2006-2171
Buffer overflow in WDM.exe in WarFTPD allows remote attackers to...
Medium
6.4
CVE-2000-0131
Buffer overflow in War FTPd 1.6x allows users to cause...
Medium
5
CVE-2000-0044
Macros in War FTP 1.70 and 1.67b2 allow local or...
Critical
10
Affected Vendor
jgaa
View all reports →Affected Software
warftpd
Vulnerable Versions:
1.8.2
Timeline
Official Publish:
April 1st, 2014
Last Modified:
September 16th, 2024
Added to House:
July 19th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.