Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Fumihiko Sano

#27526de 53,640
9.3CVSS total
Vulnerabilidades · 1
PT-2012-2491
9.3
2012-02-22
Alftp · Alftp · CVE-2012-0315
**Name of the Vulnerable Software and Affected Versions** ALFTP versions prior to 5.31 **Description** The issue allows local users to gain privileges via a Trojan horse executable file in a directory that is accessed for reading an extensionless file. This can be demonstrated by executing the README.exe file when a user attempts to access the README file. **Recommendations** For versions prior to 5.31, update to version 5.31 or later to resolve the issue. As a temporary workaround, consider restricting access to directories that contain executable files to minimize the risk of exploitation.