CVE-2007-4842 Information
Feb 14, 2021
cve
Description
Directory traversal vulnerability in Enriva Development Magellan Explorer 3.32 build 2305 and earlier allows remote FTP servers to create or overwrite arbitrary files via a .. (dot dot) in a filename. NOTE: this can be leveraged for code execution by writing to a Startup folder.
Reference
http://blog.hispasec.com/lab/advisories/adv_MagellanExplorer_3_32_Remote_Traversal.txt http://osvdb.org/40501 http://secunia.com/advisories/26737 http://securityreason.com/securityalert/3123 http://www.securityfocus.com/archive/1/478755/100/0/threaded http://www.securitytracker.com/id?1018661 http://www.vupen.com/english/advisories/2007/3103 https://exchange.xforce.ibmcloud.com/vulnerabilities/36499
Share on: