CVE-2007-4844

Severity CVSS v4.0:
Pending analysis
Type:
CWE-20 Input Validation
Publication date:
12/09/2007
Last modified:
09/04/2025

Description

X-Diesel Unreal Commander 0.92 build 565 and 573 does not properly react to an FTP server's behavior after sending a "CWD /" command, which allows remote FTP servers to cause a denial of service (infinite loop) by (1) repeatedly sending a 550 error response, or (2) sending a 550 error response and then disconnecting.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:x-diesel:unreal_commander:0.92_build565:*:*:*:*:*:*:*
cpe:2.3:a:x-diesel:unreal_commander:0.92_build573:*:*:*:*:*:*:*