Directory vulnerabilità di attraversamento in Nexgen FTP Server prima 2.2.3.23 consente remoto autenticato agli utenti di leggere o file elenco arbitrario tramite ""C:"" sequenze nella lista (1) RETR (get), (2) NLST (ls), (3) ( ls), (4) RNFR, oppure (5) comandi RNTO FTP. |
http://www.securityfocus.com/bid/9970 http://www.nexgenserver.com/cgi-bin/loadframe2.cgi?/History.html http://www.osvdb.org/4557 http://www.securitytracker.com/alerts/2004/Mar/1009545.html http://secunia.com/advisories/11216 https://exchange.xforce.ibmcloud.com/vulnerabilities/15594 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-2488 |
Vulnerabilità: CVE-2004-2488
