Summary
Xlight FTP Server is prone to multiple directory-traversal vulnerabilities because it fails to sufficiently sanitize user- supplied input.
Exploiting these issues may allow an attacker to obtain sensitive information which could aid in further attacks.
Xlight FTP Server 3.5.5 is vulnerable
other versions may also
be affected.
Solution
An update is available
please see the references for more
information.
References
Severity
Classification
-
CVSS Base Score: 5.0
AV:N/AC:L/Au:N/C:P/I:N/A:N
Related Vulnerabilities
- Apple QuickTime Multiple Arbitrary Code Execution Vulnerabilities (Win)
- Apple Safari WebKit Information Disclosure Vulnerability (Mac OS X)
- Adobe Flash Media Server Video Stream Capture Security Issue
- Asterisk Missing ACL Check Remote Security Bypass Vulnerability
- Avant Browser Address Bar Spoofing Vulnerability