FreeFloat FTP Server Buffer Overflow Vulnerability in SET Command Handler

Vulnerability

A critical buffer overflow vulnerability has been identified in FreeFloat FTP Server version 1.0. This issue arises in the SET Command Handler component, where the application improperly handles input buffer sizes, allowing for remote exploitation. The vulnerability has been publicly disclosed and is actively exploitable.

Impact

Exploitation of this vulnerability leads to a buffer overflow, allowing for arbitrary code execution on the affected system. The vulnerability has been demonstrated to work on Windows XP systems, both Service Pack 2 and 3.

Reproduction

The vulnerability can be reproduced by sending an excessive amount of data through the 'SET' command, which causes the application to crash, indicating a buffer overflow condition. After the crash, the overwritten EIP value can be extracted using a debugger, which is essential for crafting the exploit. The exploit involves redirecting execution to a JMP ESP instruction in a system DLL, after which a payload can be delivered to gain a reverse shell on the target system.

Added: Sep 1, 2025, 7:22 PM
Updated: Sep 1, 2025, 7:22 PM

Vulnerability Rating

Custom Algorithm
spread
1.0
impact
10.0
exploitability
9.7
remediation
0.0
relevance
0.1
threat
6.4
urgency
2.9
incentive
10.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.