9
CVSSv2

CVE-2009-4790

Published: 22/04/2010 Updated: 03/06/2010
CVSS v2 Base Score: 9 | Impact Score: 10 | Exploitability Score: 8
VMScore: 905
Vector: AV:N/AC:L/Au:S/C:C/I:C/A:C

Vulnerability Summary

Multiple directory traversal vulnerabilities in Sysax Multi Server 4.5 allow remote authenticated users to read or modify arbitrary files via crafted FTP commands. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

Vulnerable Product Search on Vulmon Subscribe to Product

sysax multi server 4.5

Exploits

/* Sysax Multi Server v43 Remote Delete Files Server FTP wwwsysaxcom/ ------------------------------------------------------------------------------------- A vulnerability is caused due to an input validation error when handling FTP "DELE" requests This can be exploited to escape the FTP root and delete arbitrary files on the system ...