PoC Index

CVE-2006-2407

HIGH 7.5EPSS 71.4%

Stack-based buffer overflow in (1) WeOnlyDo wodSSHServer ActiveX Component 1.2.7 and 1.3.3 DEMO, as used in other products including (2) FreeSSHd 1.0.9 and (3) freeFTPd 1.0.10, allows remote attackers to execute arbitrary code via a long key exchange algorithm string.

CVSS v2.0
7.5 HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
EPSS
71.38% chance of exploitation in the next 30 days, 99th percentile
Published
2006-05-16
Updated
2024-08-07

Proof-of-concept exploits (6)

Metasploit modules (1)

ExploitDB entries (3)

References

Related