PT-2001-2087 · Cooolsoft · Cooolsoft Powerftp Server
Publicado
2001-11-28
·
Atualizado
2016-10-18
·
CVE-2001-0934
CVSS v2.0
7.5
Alta
| Vetor | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Cooolsoft PowerFTP Server version 2.03
Description
The issue allows remote attackers to obtain the physical path of the server root via the
pwd command, which lists the full pathname.Recommendations
For Cooolsoft PowerFTP Server version 2.03, consider restricting access to the
pwd command as a temporary workaround until a patch is available.Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Cooolsoft Powerftp Server