PoC Index

CVE-2006-6652

HIGH 9.0EPSS 19.6%

Buffer overflow in the glob implementation (glob.c) in libc in NetBSD-current before 20050914, NetBSD 2.* and 3.* before 20061203, and Apple Mac OS X before 2007-004, as used by the FTP daemon and tnftpd, allows remote authenticated users to execute arbitrary code via a long pathname that results from path expansion.

CVSS v2.0
9.0 HIGHAV:N/AC:L/Au:S/C:C/I:C/A:C
EPSS
19.55% chance of exploitation in the next 30 days, 97th percentile
Published
2006-12-20
Updated
2024-08-07

ExploitDB entries (2)

References

Related