Directory traversal vulnerability in EFTP 2.0.7.337 allows remote authenticated users to reveal directory contents via a .. (dot dot) in the (1) LIST, (2) QUOTE SIZE, and (3) QUOTE MDTM commands.
Link | Tags |
---|---|
http://www.eftp.org/releasehistory.html | url repurposed |
https://exchange.xforce.ibmcloud.com/vulnerabilities/7113 | vdb entry |
https://exchange.xforce.ibmcloud.com/vulnerabilities/7114 | vdb entry |
http://www.securityfocus.com/bid/3331 | vdb entry vendor advisory |
http://www.securityfocus.com/archive/1/213647 | vendor advisory mailing list |
http://www.securityfocus.com/bid/3333 | vendor advisory vdb entry exploit |