Freefloat FTP Server - Directory Traversal



EKU-ID: 39712 CVE: OSVDB-ID:
Author: Pr0T3cT10n Published: 2010-12-06 Verified: Verified
Download:

Rating

☆☆☆☆☆
Home


source: https://www.securityfocus.com/bid/45218/info

Freefloat FTP Server is prone to a directory-traversal vulnerability because it fails to sufficiently sanitize user-supplied input.

Exploiting this issue can allow an attacker to retrieve arbitrary files outside of the FTP server root directory. This may aid in further attacks.

GET ../../boot.ini