Reported January 26, 2004 by Qianwei Hu.
Serv-U FTP Server, version 220.127.116.11 and 18.104.22.168
Serv-U FTP Server is vulnerable to a remote buffer overflow exploit in the CHMOD command processor. An attacker can login to the server and inject shell code to the server, thereby launching a remove command shell service on the desire port.
The vendor, Rhinosoft.com, is aware of the problem.
Discovered by [email protected].