CVE-2000-0565 Information

Description

SmartFTP Daemon 0.2 allows a local user to access arbitrary files by uploading and specifying an alternate user configuration file via a .. (dot dot) attack.

Reference

http://archives.neohapsis.com/archives/bugtraq/2000-06/0100.html http://www.osvdb.org/1394 http://www.securityfocus.com/bid/1344 https://exchange.xforce.ibmcloud.com/vulnerabilities/4706

Share on: