Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2008-4247 (freebsd, netbsd, openbsd)

BugsAlert Home > CVE-2008-4247 (freebsd, netbsd, openbsd)
 
 

ftpd in OpenBSD 4.3, FreeBSD 7.0, and NetBSD 4.0 interprets long commands from an FTP client as multiple commands, which allows remote attackers to conduct cross-site request forgery (CSRF) attacks and execute arbitrary FTP commands via a long ftp:// URI that leverages an existing session from the FTP client implementation in a web browser.




Original Source: http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2008-4247

Learn more about CVE-2008-4247 (freebsd, netbsd, openbsd)
 
Tags: cve-2008-4247 freebsd netbsd openbsd

Related Items

      CVE-2008-4171 (invision_power_board)

      Apple Mac OS X Security Update Fixes Application Firewall Vulnerabilities

      Bitflu StorageFarabDb Security Bypass Vulnerability

      TROJ_VB.GUH

      CVE-2008-2873 (shibby_shop)

      Trojan.Win32.ConnectionServices.e

      CVE-2008-0120 (office_powerpoint_viewer)

 

Pixel