PT-2001-2189 · Argosoft · Argosoft Ftp Server

Published

2001-07-01

·

Updated

2024-02-02

·

CVE-2001-1043

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions ArGoSoft FTP Server version 1.2.2.2
Description The issue allows remote attackers to read arbitrary files and directories by uploading a .lnk (link) file that points to the target file.
Recommendations For ArGoSoft FTP Server version 1.2.2.2, consider restricting the ability to upload .lnk files as a temporary workaround until a patch is available.

Exploit

Fix

Link Following

Weakness Enumeration

Related Identifiers

CVE-2001-1043

Affected Products

Argosoft Ftp Server