PT-2001-2273 · Whitsoft Development · Slimftpd
Published
2001-08-21
·
Updated
2008-09-05
·
CVE-2001-1131
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
WhitSoft Development SlimFTPd version 2.2
Description
A directory traversal issue allows an attacker to read arbitrary files and directories by using a modified dot dot in the CD command.
Recommendations
For WhitSoft Development SlimFTPd version 2.2, update to a version that fixes this issue, if available. As a temporary workaround, consider restricting access to the CD command to minimize the risk of exploitation.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Slimftpd