vendor:
TurboFTP Server
by:
leinakesi
7.5
CVSS
HIGH
Directory Traversal
22
CWE
Product Name: TurboFTP Server
Affected Version From: 1.20.745
Affected Version To: 1.20.745
Patch Exists: NO
Related CWE:
CPE: a:turboftp:turboftp_server:1.20.745
Platforms Tested:
2010
TurboFTP Server Directory Traversal Vulnerability
TurboFTP Server is prone to a directory-traversal vulnerability because it fails to sufficiently sanitize user-supplied input. Exploiting this issue can allow an attacker to download or upload arbitrary files outside the root directory. This may aid in further attacks.
Mitigation:
Unknown