Directory traversal vulnerability in the rftpcom.dll ActiveX control in Attachmate Reflection FTP Client before 14.1.429 allows remote attackers to execute arbitrary code via unspecified vectors to the SaveSettings method.
References
Link | Resource |
---|---|
http://www.zerodayinitiative.com/advisories/ZDI-14-290/ | |
http://support.attachmate.com/techdocs/2501.html | Vendor Advisory |
Configurations
Information
Published : 2015-02-06 03:59
Updated : 2015-02-09 06:08
NVD link : CVE-2014-0605
Mitre link : CVE-2014-0605
JSON object : View
CWE
CWE-22
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
Products Affected
attachmate
- reflection_ftp_client