9.3
CVSSv2

CVE-2012-0315

Published: 22/02/2012 Updated: 22/11/2017
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 828
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Untrusted search path vulnerability in ALFTP prior to 5.31 allows local users to gain privileges via a Trojan horse executable file in a directory that is accessed for reading an extensionless file, as demonstrated by executing the README.exe file when a user attempts to access the README file.

Vulnerable Product Search on Vulmon Subscribe to Product

estsoft alftp

estsoft alftp 4.1

estsoft alftp 5.0

estsoft alftp 5.1