Lucene search

K
nvd[email protected]NVD:CVE-2008-2519
HistoryJun 03, 2008 - 2:32 p.m.

CVE-2008-2519

2008-06-0314:32:00
CWE-22
web.nvd.nist.gov
4

6.8 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

7 High

AI Score

Confidence

Low

0.002 Low

EPSS

Percentile

59.2%

Directory traversal vulnerability in Core FTP client 2.1 Build 1565 allows remote FTP servers to create or overwrite arbitrary files via … (dot dot) sequences in responses to LIST commands, a related issue to CVE-2002-1345. NOTE: this can be leveraged for code execution by writing to a Startup folder.

Affected configurations

NVD
Node
core_ftpcore_ftpMatch2.1build_1565le
OR
core_ftpcore_ftpMatch2.1build_1565pro

6.8 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

7 High

AI Score

Confidence

Low

0.002 Low

EPSS

Percentile

59.2%

Related for NVD:CVE-2008-2519