The Mini FTP server in Novell iChain 2.2 and 2.3 SP2 and previous versions allows remote unauthenticated malicious users to obtain the full path of the server via the PWD command.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
novell ichain 2.2 |
||
novell ichain 2.3 |
||
novell ichain 2.2.113 |