Summary
ArGoSoft FTP Server .NET is prone to a directory-traversal vulnerability because it fails to sufficiently sanitize user- supplied input.
Exploiting this issue can allow an attacker to upload and download arbitrary files outside of the FTP server root directory. This could help the attacker launch further attacks.
ArGoSoft FTP Server .NET 1.0.2.1 is vulnerable
other versions may
also be affected.
References
Severity
Classification
-
CVSS Base Score: 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:N
Related Vulnerabilities
- pyftpdlib FTP Server Denial of Service Vulnerability
- Home FTP Server 'SITE INDEX' Command Remote Denial of Service Vulnerability
- Wing FTP Server Denial of Service Vulnerability and Information Disclosure Vulnerability
- Home FTP Server 'MKD' Command Directory Traversal Vulnerability
- NiteServer FTP directory traversal