Directory traversal vulnerability in CooolSoft Personal FTP Server 2.24 allows remote attackers to read or modify arbitrary files via .. (dot dot) sequences in the commands (1) LIST (ls), (2) mkdir, (3) put, or (4) get.
References
Link | Resource |
---|---|
http://archives.neohapsis.com/archives/bugtraq/2002-10/0142.html | Vendor Advisory |
http://archives.neohapsis.com/archives/bugtraq/2002-10/0142.html | Vendor Advisory |
Configurations
History
20 Nov 2024, 23:41
Type | Values Removed | Values Added |
---|---|---|
References | () http://archives.neohapsis.com/archives/bugtraq/2002-10/0142.html - Vendor Advisory |
Information
Published : 2003-03-31 05:00
Updated : 2025-04-03 01:03
NVD link : CVE-2002-1544
Mitre link : CVE-2002-1544
CVE.ORG link : CVE-2002-1544
JSON object : View
Products Affected
cooolsoft
- personal_ftp_server
CWE