Directory traversal vulnerability in the rftpcom.dll ActiveX control in Attachmate Reflection FTP Client before 14.1.429 allows remote attackers to execute arbitrary code via unspecified vectors to the SaveSettings method.
References
| Link | Resource |
|---|---|
| http://www.zerodayinitiative.com/advisories/ZDI-14-290/ | |
| http://support.attachmate.com/techdocs/2501.html | Vendor Advisory |
Configurations
Information
Published : 2015-02-06 03:59
Updated : 2015-02-09 06:08
NVD link : CVE-2014-0605
Mitre link : CVE-2014-0605
JSON object : View
CWE
CWE-22
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
Products Affected
attachmate
- reflection_ftp_client


