积极预防 及时发现
快速响应 力保恢复
RaidenFTPD Server 2.1 build 947中的目录遍历漏洞允许攻击者通过 (1)...
发布时间:2001-06-27 信息来源:管理员

CNCVE编号:CNCVE-20010491 CVE编号:CAN-2001-0491 安全级别:中 漏洞中文描述: RaidenFTPD Server 2.1 build 947中的目录遍历漏洞允许攻击者通过 (1)在CWD中的 “....” (2)NLST中的“..”或(3)NLST中的“...”来访问ftp root以外的文件。 漏洞英文描述: Directory traversal vulnerability in RaidenFTPD Server 2.1 build 947 allows attackers to access files outside the ftp root via dot dot attacks, such as (1) .... in CWD, (2) .. in NLST, or (3) ... in NLST. 漏洞参考: BUGTRAQ:20010425 Vulnerabilities in RaidenFTPD Server URL:http://archives.neohapsis.com/archives/bugtraq/2001-04/0465.html 系统类型: Unix/Linux Win95/98/ME Win2000/NT 漏洞类型:输入有效性检查错误