0.003 Low
EPSS
Percentile
71.6%
WFTPD 3.00 allows remote attackers to read arbitrary files by uploading a (link) file that ends in a “.lnk.” extension, which bypasses WFTPD’s check for a “.lnk” extension.
www.securityfocus.com/archive/1/194442
www.securityfocus.com/bid/2957
exchange.xforce.ibmcloud.com/vulnerabilities/6760