Description
Heap-based buffer overflow in the TELNET_STREAM_CONTEXT::OnSendData function in ftpsvc.dll in Microsoft FTP Service 7.0 and 7.5 for Internet Information Services (IIS) 7.0, and IIS 7.5, allows remote attackers to execute arbitrary code or cause a denial of service (daemon crash) via a crafted FTP command, aka "IIS FTP Service Heap Buffer Overrun Vulnerability." NOTE: some of these details are obtained from third party information.
Remediation
References
Related Vulnerabilities
IBM RTC Session Fixation Vulnerability (CVE-2018-1492)
WordPress 3.8.x Cross-Site Scripting Vulnerability (3.8 - 3.8.11)
WordPress Plugin Tutor LMS-eLearning and online course solution Local File Inclusion (1.8.7)
Jboss EAP Loop with Unreachable Exit Condition ('Infinite Loop') Vulnerability (CVE-2018-1336)