header-logo
Suggest Exploit
vendor:
Xynph FTP Server
by:
SecurityFocus
7.5
CVSS
HIGH
Directory Traversal
22
CWE
Product Name: Xynph FTP Server
Affected Version From: Unknown
Affected Version To: Unknown
Patch Exists: YES
Related CWE: CVE-2002-1390
CPE: a:xynph:xynph_ftp_server
Metasploit: N/A
Other Scripts: N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References: N/A
Nuclei Metadata: N/A
Platforms Tested: Unknown
2002

Directory Traversal in Xynph FTP Server

Xynph FTP Server is vulnerable to a directory traversal attack, which allows a remote attacker to escape the FTP root directory using relative path notation. This could allow the attacker to gain unauthorized access to the system.

Mitigation:

Upgrade to the latest version of Xynph FTP Server.
Source

Exploit-DB raw data:

source: https://www.securityfocus.com/bid/6587/info

A problem with the handling of input has been reported in Xynph FTP Server. Under some circumstances, it may be possible for a remote user to escape the FTP root directory using relative path notation. This could allow unauthorized access to systems using the vulnerable software. 

cd ...