Glub Tech Secure FTP 'LIST' Command Directory Traversal Vulnerability
BID:29741
Info
Glub Tech Secure FTP 'LIST' Command Directory Traversal Vulnerability
| Bugtraq ID: | 29741 |
| Class: | Input Validation Error |
| CVE: |
CVE-2008-2821 |
| Remote: | Yes |
| Local: | No |
| Published: | Jun 13 2008 12:00AM |
| Updated: | May 07 2015 05:28PM |
| Credit: | Tan Chew Keong |
| Vulnerable: |
Glub Tech Secure FTP 2.5.15 |
| Not Vulnerable: |
Glub Tech Secure FTP 2.5.16 |
Discussion
Glub Tech Secure FTP 'LIST' Command Directory Traversal Vulnerability
Glub Tech Secure FTP is prone to a directory-traversal vulnerability because the application fails to sufficiently sanitize user-supplied input. This issue occurs in the FTP client.
Exploiting these issues will allow an attacker to write arbitrary files to locations outside of the application's current directory. This could help the attacker launch further attacks.
Secure FTP 2.5.15 for Microsoft Windows is vulnerable; other versions may also be affected.
Glub Tech Secure FTP is prone to a directory-traversal vulnerability because the application fails to sufficiently sanitize user-supplied input. This issue occurs in the FTP client.
Exploiting these issues will allow an attacker to write arbitrary files to locations outside of the application's current directory. This could help the attacker launch further attacks.
Secure FTP 2.5.15 for Microsoft Windows is vulnerable; other versions may also be affected.
Exploit / POC
Glub Tech Secure FTP 'LIST' Command Directory Traversal Vulnerability
An attacker can exploit this issue by enticing an unsuspecting victim to connect to a malicious server.
The following proof of concept is available:
Response to LIST:
\..\..\..\..\..\..\..\..\..\testfile.txt\r\n
An attacker can exploit this issue by enticing an unsuspecting victim to connect to a malicious server.
The following proof of concept is available:
Response to LIST:
\..\..\..\..\..\..\..\..\..\testfile.txt\r\n
Solution / Fix
Glub Tech Secure FTP 'LIST' Command Directory Traversal Vulnerability
Solution:
The vendor has addressed this issue in Secure FTP 2.5.16. Contact the vendor for details.
Solution:
The vendor has addressed this issue in Secure FTP 2.5.16. Contact the vendor for details.
References
Glub Tech Secure FTP 'LIST' Command Directory Traversal Vulnerability
References:
References:
- Glub Tech Secure FTP FTP-Client Directory Traversal Vulnerability (Tan Chew Keong)
- Glub Tech Secure FTP Homepage (Glub Tech)