5
CVSSv2

CVE-2001-0295

Published: 03/05/2001 Updated: 18/10/2016
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Directory traversal vulnerability in War FTP 1.67.04 allows remote malicious users to list directory contents and possibly read files via a "dir *./../.." command.

Vulnerable Product Search on Vulmon Subscribe to Product

jarle aase war ftpd 1.67b04

Exploits

source: wwwsecurityfocuscom/bid/2444/info A remote user could gain read access to directories outside of the ftp root in a Jarle Aase War FTPD Server Once a user is logged into the server, a specially crafted 'dir' command will disclose an arbitrary directory This vulnerability could allow an attacker to gain read access to various file ...