IglooFTP 0.6.1, when recursively uploading a directory, allows local users to overwrite the files that are being uploaded by creating temporary files with names generated by the tmpnam function, before the files are opened by IglooFTP.
References
Link | Resource |
---|---|
http://tigger.uic.edu/~jlongs2/holes/iglooftp.txt | Exploit Vendor Advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/18632 |
Configurations
History
No history.
Information
Published : 2005-01-10 05:00
Updated : 2024-02-04 16:52
NVD link : CVE-2004-1276
Mitre link : CVE-2004-1276
CVE.ORG link : CVE-2004-1276
JSON object : View
Products Affected
iglooftp
- iglooftp
CWE