vendor:
zFTPServer Suite
by:
Stefan Schurtz
7.5
CVSS
HIGH
Directory Traversal
22
CWE
Product Name: zFTPServer Suite
Affected Version From: 6.0.0.52
Affected Version To: 6.0.0.52
Patch Exists: YES
Related CWE: CVE-2011-4717
CPE: a:zftpserver:zftpserver_suite
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: None
2011
zFTPServer Suite 6.0.0.52 ‘rmdir’ Directory Traversal
This PoC-Exploit is only for educational purpose!!! It is a directory traversal vulnerability in zFTPServer Suite 6.0.0.52. It allows an attacker to send a payload of minimum length 38 to the vulnerable server and traverse the directory structure.
Mitigation:
Upgrade to the latest version of zFTPServer Suite