Directory traversal vulnerability in Baby FTP Server 1.2, and possibly other versions before May 31, 2003 allows remote authenticated users to list arbitrary directories and possibly read files via "..." (triple dot) manipulations to the CWD command.
References
Configurations
Information
Published : 2003-12-30 21:00
Updated : 2016-11-28 11:06
NVD link : CVE-2003-1299
Mitre link : CVE-2003-1299
JSON object : View
CWE
Products Affected
pablo_software_solutions
- baby_ftp_server