Lucene search

K
cve[email protected]CVE-2000-1101
HistoryMar 09, 2002 - 5:00 a.m.

CVE-2000-1101

2002-03-0905:00:00
web.nvd.nist.gov
25
cve-2000-1101
directory traversal
vulnerability
wftpd 3.00
wftpd 2.41
dot dot attack

5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

6.6 Medium

AI Score

Confidence

Low

0.002 Low

EPSS

Percentile

59.2%

Directory traversal vulnerability in Winsock FTPd (WFTPD) 3.00 and 2.41 with the “Restrict to home directory” option enabled allows local users to escape the home directory via a “/…/” string, a variation of the … (dot dot) attack.

Affected configurations

NVD
Node
texas_imperial_softwarewftpdMatch2.41_rc14
OR
texas_imperial_softwarewftpdMatch2.41_rc14pro
OR
texas_imperial_softwarewftpdMatch3.0pro

5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

6.6 Medium

AI Score

Confidence

Low

0.002 Low

EPSS

Percentile

59.2%

Related for CVE-2000-1101