Unrated severityNVD Advisory· Published May 16, 2006· Updated Apr 16, 2026
CVE-2006-2407
CVE-2006-2407
Description
Stack-based buffer overflow in (1) WeOnlyDo wodSSHServer ActiveX Component 1.2.7 and 1.3.3 DEMO, as used in other products including (2) FreeSSHd 1.0.9 and (3) freeFTPd 1.0.10, allows remote attackers to execute arbitrary code via a long key exchange algorithm string.
Affected products
4cpe:2.3:a:weonlydo:wodsshserver:1.2.7:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:weonlydo:wodsshserver:1.2.7:*:*:*:*:*:*:*
- cpe:2.3:a:weonlydo:wodsshserver:1.3.3_demo:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
18- secunia.com/advisories/19845nvdPatchVendor Advisory
- www.securityfocus.com/bid/17958nvdExploit
- secunia.com/advisories/19846nvdVendor Advisory
- secunia.com/advisories/20136nvdVendor Advisory
- www.vupen.com/english/advisories/2006/1785nvdVendor Advisory
- www.vupen.com/english/advisories/2006/1786nvdVendor Advisory
- www.vupen.com/english/advisories/2006/1842nvdVendor Advisory
- www.kb.cert.org/vuls/id/477960nvdUS Government Resource
- marc.infonvd
- securityreason.com/securityalert/901nvd
- www.osvdb.org/25463nvd
- www.osvdb.org/25569nvd
- www.securityfocus.com/archive/1/434007/100/0/threadednvd
- www.securityfocus.com/archive/1/434038/100/0/threadednvd
- www.securityfocus.com/archive/1/434402/100/0/threadednvd
- www.securityfocus.com/archive/1/434415/100/0/threadednvd
- www.securityfocus.com/archive/1/434415/30/4920/threadednvd
- exchange.xforce.ibmcloud.com/vulnerabilities/26442nvd
News mentions
0No linked articles in our index yet.