Power Server FTP Addon Directory Traversal Vulnerability
BID:7985
Info
Power Server FTP Addon Directory Traversal Vulnerability
| Bugtraq ID: | 7985 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jun 19 2003 12:00AM |
| Updated: | Jun 19 2003 12:00AM |
| Credit: | This vulnerability was reported by Ziv Kamir <[email protected]>. |
| Vulnerable: |
Power Server Power Server 1.0 |
| Not Vulnerable: | |
Discussion
Power Server FTP Addon Directory Traversal Vulnerability
It has been reported that Power Server FTP Addon does not properly handle some types of requests. This may make it possible for a remote user to gain access to resources outside of the FTP root directory.
Access to this information could potentially aid an attacker in launching further attacks against the target system or it's users.
It has been reported that Power Server FTP Addon does not properly handle some types of requests. This may make it possible for a remote user to gain access to resources outside of the FTP root directory.
Access to this information could potentially aid an attacker in launching further attacks against the target system or it's users.
Exploit / POC
Power Server FTP Addon Directory Traversal Vulnerability
No exploit is required.
No exploit is required.
Solution / Fix
Power Server FTP Addon Directory Traversal Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
Power Server FTP Addon Directory Traversal Vulnerability
References:
References:
- Power Server Product Page (Power Server)