Directory traversal vulnerability in ArGoSoft FTP Server before 1.4.1.6 allows remote authenticated users to determine the existence of arbitrary files via ".." sequences in the SITE UNZIP argument.
Link | Tags |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/15411 | vdb entry |
http://www.securityfocus.com/bid/9770 | patch vdb entry exploit |
http://www.argosoft.com/rootpages/FtpServer/ChangeList.aspx | |
http://secunia.com/advisories/11002 | third party advisory patch |
http://www.securiteam.com/windowsntfocus/5RP010KCAO.html | |
http://www.osvdb.org/11333 | vdb entry |