Golden Ftp Server · Golden Ftp Server · CVE-2009-4194
**Name of the Vulnerable Software and Affected Versions**
Golden FTP Server versions 4.30 through 4.50
**Description**
The issue allows remote authenticated users to delete arbitrary files via a .. (dot dot) in the `DELE` command. This is a directory traversal vulnerability.
**Recommendations**
For Golden FTP Server versions 4.30 through 4.50, consider restricting access to the `DELE` command until a patch is available.
As a temporary workaround, avoid using the `DELE` command with a .. (dot dot) in the command string until the issue is resolved.