Summary
Xlight FTP Server is prone to multiple directory-traversal vulnerabilities because it fails to sufficiently sanitize user- supplied input.
Exploiting these issues may allow an attacker to obtain sensitive information which could aid in further attacks.
Xlight FTP Server 3.5.5 is vulnerable
other versions may also
be affected.
Solution
An update is available
please see the references for more
information.
References
Severity
Classification
-
CVSS Base Score: 5.0
AV:N/AC:L/Au:N/C:P/I:N/A:N
Related Vulnerabilities
- Adobe Flash Player Multiple Security Bypass Vulnerabilities - 01 Feb14 (Linux)
- Apache Tomcat XML External Entity Information Disclosure Vulnerability
- Apache Tomcat Multiple Vulnerabilities - 01 Mar14
- Adobe Reader Cross-Site Scripting & Denial of Service Vulnerabilities (Windows)
- Apple iTunes Insecure Permissions Privilege Escalation Vulnerability (Mac OS X)