Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2006-2407
Description:Stack-based buffer overflow in (1) WeOnlyDo wodSSHServer ActiveX Component 1.2.7 and 1.3.3 DEMO, as used in other products including (2) FreeSSHd 1.0.9 and (3) freeFTPd 1.0.10, allows remote attackers to execute arbitrary code via a long key exchange algorithm string.
Test IDs: 1.3.6.1.4.1.25623.1.0.200012  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2006-2407
BugTraq ID: 17958
http://www.securityfocus.com/bid/17958
Bugtraq: 20060514 POC exploit for freeSSHd version 1.0.9 (Google Search)
http://www.securityfocus.com/archive/1/434007/100/0/threaded
Bugtraq: 20060515 Re: [Full-disclosure] POC exploit for freeSSHd version 1.0.9 (Google Search)
http://www.securityfocus.com/archive/1/434038/100/0/threaded
Bugtraq: 20060517 BUGTRAQ:20060517 Re:POC exploit for freeFTPd 1.0.10 (Google Search)
http://www.securityfocus.com/archive/1/434415/100/0/threaded
Bugtraq: 20060517 POC exploit for freeFTPd 1.0.10 (Google Search)
http://www.securityfocus.com/archive/1/434402/100/0/threaded
Bugtraq: 20060517 Re:POC exploit for freeFTPd 1.0.10 (Google Search)
http://www.securityfocus.com/archive/1/434415/30/4920/threaded
CERT/CC vulnerability note: VU#477960
http://www.kb.cert.org/vuls/id/477960
http://marc.info/?l=full-disclosure&m=114764338702488&w=2
http://www.osvdb.org/25463
http://www.osvdb.org/25569
http://secunia.com/advisories/19845
http://secunia.com/advisories/19846
http://secunia.com/advisories/20136
http://securityreason.com/securityalert/901
http://www.vupen.com/english/advisories/2006/1785
http://www.vupen.com/english/advisories/2006/1786
http://www.vupen.com/english/advisories/2006/1842
XForce ISS Database: freesshd-key-exchange-bo(26442)
https://exchange.xforce.ibmcloud.com/vulnerabilities/26442




© 1998-2025 E-Soft Inc. All rights reserved.