E95-wge91
CVSS:
7.5 (AV:N/AC:L/Au:N/C:P/I:P/A:P)
False Positive:
f
Variants:
12
Year:
1995
Description
This strike simulates an FTP Bounce Attack.
By sending a crafted PORT command, an attacker can cause a vulnerable FTP server to communicate with a third system.
The results of the communication can subsequently be accessed by the attacker, allowing communication with otherwise unreachable systems.
CVE
References
http://web.archive.org/web/20131105191347/http:/www.cert.org/tech_tips/ftp_port_attacks.html