Directory traversal vulnerability in CesarFTP 0.98b and previous versions allows remote authenticated users (such as anonymous) to read arbitrary files via a GET with a filename that contains a ...%5c (modified dot dot).
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
aclogic cesarftp 0.98b |