Vulnerabilities (CVE)

Filtered by vendor Iglooftp Subscribe
Filtered by product Iglooftp
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2004-1276 1 Iglooftp 1 Iglooftp 2024-02-04 2.1 LOW N/A
IglooFTP 0.6.1, when recursively uploading a directory, allows local users to overwrite the files that are being uploaded by creating temporary files with names generated by the tmpnam function, before the files are opened by IglooFTP.
CVE-2004-1277 1 Iglooftp 1 Iglooftp 2024-02-04 5.0 MEDIUM N/A
The download_selection_recursive() function in ftplist.c for IglooFTP 0.6.1 allows remote malicious FTP servers to overwrite arbitrary files via filenames that contain / (slash) characters.