Directory traversal vulnerability in RaidenFTPD before 2.4.2241 allows remote attackers to read arbitrary files via a "..\\" (dot dot backslash) in the urlget site command.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/13292 | vdb entry |
http://www.osvdb.org/15713 | vdb entry |
http://marc.info/?l=bugtraq&m=111507556127582&w=2 | mailing list |
http://forum.raidenftpd.com/showflat.php?Board=UBB13&Number=45685 | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/20368 | vdb entry |
http://secunia.com/advisories/15037 | third party advisory patch |