Lucene search

K
cve[email protected]CVE-2008-2821
HistoryJun 23, 2008 - 5:41 p.m.

CVE-2008-2821

2008-06-2317:41:00
CWE-22
web.nvd.nist.gov
20
cve-2008-2821
directory traversal
ftp client
glub tech secure ftp
windows
remote ftp servers

9.3 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

6.4 Medium

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

51.3%

Directory traversal vulnerability in the FTP client in Glub Tech Secure FTP before 2.5.16 on Windows allows remote FTP servers to create or overwrite arbitrary files via a …\ (dot dot backslash) in a response to a LIST command, a related issue to CVE-2002-1345.

Affected configurations

NVD
Node
microsoftwindows_nt
AND
glubsecure_ftpRange2.5.15
CPENameOperatorVersion
glub:secure_ftpglub secure ftple2.5.15

9.3 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

6.4 Medium

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

51.3%