CVE-2006-2407

Stack-based buffer overflow in (1) WeOnlyDo wodSSHServer ActiveX Component 1.2.7 and 1.3.3 DEMO, as used in other products including (2) FreeSSHd 1.0.9 and (3) freeFTPd 1.0.10, allows remote attackers to execute arbitrary code via a long key exchange algorithm string.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:freesshd:freesshd:1.0.9:*:*:*:*:*:*:*
cpe:2.3:a:weonlydo:wodsshserver:1.2.7:*:*:*:*:*:*:*
cpe:2.3:a:weonlydo:wodsshserver:1.3.3_demo:*:*:*:*:*:*:*
cpe:2.3:a:freeftpd:freeftpd:1.0.10:*:*:*:*:*:*:*

Information

Published : 2006-05-16 10:02

Updated : 2018-10-18 16:39


NVD link : CVE-2006-2407

Mitre link : CVE-2006-2407


JSON object : View

Products Affected

weonlydo

  • wodsshserver

freesshd

  • freesshd

freeftpd

  • freeftpd
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer