Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Tomtidaly

#49539of 53,632
5Total CVSS
Vulnerabilities · 1
PT-2015-7573
5.0
2015-12-27
Tor · Tails · CVE-2015-7665
**Name of the Vulnerable Software and Affected Versions** Tails versions prior to 1.7 **Description** The issue allows remote FTP servers to discover the Tor client IP address by reading a `PORT` or `EPRT` command. This occurs because Tails does not prevent automatic fallback from passive FTP to active FTP when using the wget program. **Recommendations** For versions prior to 1.7, consider updating to version 1.7 or later to resolve the issue. As a temporary workaround, restrict the use of the wget program for FTP connections to minimize the risk of IP address exposure.