FireFTP 'MLSD' And 'LIST' Commands Directory Traversal Vulnerability
BID:29289
Info
FireFTP 'MLSD' And 'LIST' Commands Directory Traversal Vulnerability
| Bugtraq ID: | 29289 |
| Class: | Input Validation Error |
| CVE: |
CVE-2008-2399 |
| Remote: | Yes |
| Local: | No |
| Published: | May 19 2008 12:00AM |
| Updated: | May 07 2015 05:28PM |
| Credit: | Tan Chew Keong |
| Vulnerable: |
FireFTP FireFTP 0.97.1 |
| Not Vulnerable: |
FireFTP FireFTP 0.98.20080518 |
Discussion
FireFTP 'MLSD' And 'LIST' Commands Directory Traversal Vulnerability
FireFTP is prone to a directory-traversal vulnerability because it fails to sufficiently sanitize user-supplied input data.
Exploiting this issue allows an attacker to write arbitrary files to locations outside of the FTP client's current directory. This could help the attacker launch further attacks.
FireFTP 0.97.1 is vulnerable; other versions may also be affected.
FireFTP is prone to a directory-traversal vulnerability because it fails to sufficiently sanitize user-supplied input data.
Exploiting this issue allows an attacker to write arbitrary files to locations outside of the FTP client's current directory. This could help the attacker launch further attacks.
FireFTP 0.97.1 is vulnerable; other versions may also be affected.
Exploit / POC
FireFTP 'MLSD' And 'LIST' Commands Directory Traversal Vulnerability
A researcher has developed and published a working prrof of concept. The exploit was removed from the website but it may still be publically available.
A researcher has developed and published a working prrof of concept. The exploit was removed from the website but it may still be publically available.
Solution / Fix
FireFTP 'MLSD' And 'LIST' Commands Directory Traversal Vulnerability
Solution:
The vendor has fixed the issue in the CVS repository. Please see the references for more information.
Solution:
The vendor has fixed the issue in the CVS repository. Please see the references for more information.
References
FireFTP 'MLSD' And 'LIST' Commands Directory Traversal Vulnerability
References:
References: